← Back to CVE search

CVE-2026-67243

Description

freo2 provided by refirio contains an unrestricted upload of file with dangerous type vulnerability. A user with the highest-level administrative privileges for the product may upload an executable file and execute arbitrary OS commands.

CVSS 7.2EPSS 0.301%Risk 0.74
View source
Published
2026-08-04 08:16:35
Last modified
2026-08-04 14:16:32
Vector
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H