Upload of the file zlt-business/file-center/src/main/java/com/central/file/controller/FileController.java. The manipulation results in unrestricted upload.This vulnerability is cataloged as CVE-2025-8841. The attack may be launched remotely. Furthermore, there is an exploit available.