An issue in EfroTech Time Trax v.1.0 allows a remote attacker to execute arbitrary code via the file attachment function in the leave request form
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
Link | Tags |
---|---|
http://efrotech.com | product |
http://timetrax.com | broken link |
https://github.com/morphine009/CVE-2025-46157 | third party advisory exploit |