SimpleHelp remote support software v5.5.7 and before allows admin users to upload arbitrary files anywhere on the file system by uploading a crafted zip file (i.e. zip slip). This can be exploited to execute arbitrary code on the host in the context of the SimpleHelp server user.
https://thehackernews.com/2025/02/hackers-exploit-simplehelp-rmm-flaws.html
https://www.securityweek.com/simplehelp-remote-access-software-exploited-in-attacks/
https://thehackernews.com/2025/01/zyxel-cpe-devices-face-active.html
https://securityaffairs.com/173578/security/attackers-exploit-simplehelp-rmm-software-flaws.html
https://thehackernews.com/2025/01/critical-simplehelp-flaws-allow-file.html