← Späť na vyhľadávanie CVE

CVE-2026-64881

Unknown

Popis

The audit file upload handler does not sanitize filenames, allowing shell metacharacters to flow into system command execution. This input validation failure enables command injection when chained with a related vulnerability.

CVSS 8.8EPSS 1.44%Riziko 0.99
Zobraziť zdroj
Zverejnené
2026-07-21 21:16:53
Dotknuté verzie
unknown
Typ
Iné
Posledná úprava
2026-07-24 05:16:48
Vektor
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H