← Back

CVE-2026-50894

nvd nist
Published: Sep 4, 2026Modified: Sep 9, 2026Deferred

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

easyadmin v2.0.2.2 is vulnerable to Unrestricted Upload of File with Dangerous Type in the background management interface which allows authenticated remote attackers to execute arbitrary code and gain server privileges via a crafted file upload.

References (3)

Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0

Timeline

No history available yet.