CVE-2025-8841: ZLT2000 Microservices-Platform

Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.

A vulnerability was identified in zlt2000 microservices-platform up to 6.0.0. Affected by this vulnerability is the function Upload of the file zlt-business/file-center/src/main/java/com/central/file/controller/FileController.java. The manipulation leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

Affected products

  • ZLT2000 Microservices-Platform: up to and including 6.0.0

Published 2025-08-11. Last modified 2026-06-17.