Security Advisory

CVE-2023-34939

9.8
CRITICAL

Vulnerability Description

Onlyoffice Community Server before v12.5.2 was discovered to contain a remote code execution (RCE) vulnerability via the component UploadProgress.ashx.
Published Date June 22, 2023
Official Source NIST NVD Advisory