Back to all
2025-04-17

Wisdom Master Pro - Unrestricted Upload of File with Dangerous Type

ZUSOART ID
ZA-2025-02
CVE ID
CVE-2025-31339
Vulnerability Type
CWE-434: Unrestricted Upload of File with Dangerous Type
CVSS 4.0 Base
5.3
Description

An unrestricted upload of file with dangerous type vulnerability in the course management function of Wisdom Master Pro versions 5.0 through 5.2 allows remote authenticated users to craft a malicious file.

Vendor
SUNNET Technology Co., Ltd.
Product
Category
Version affected
Wisdom Master Pro
From 5.0 through 5.2
Mitigations

Contact SUNNET Technology for version updates.

Release date
2025-04-17
Credit

Kuang Ming Chang of ZUSO ART