ZeroHour

CVE-2026-75413

CVSS 3.1
7.5 high
EPSS
<1%p20
Published
()
Modified
Description

DocSys V2.02.80 is vulnerable to Any File Download. An attacker does not need to go through authentication to utilize the downloadDocEx.do interface and download any file via the parameter targetPath.

Weakness
CWE-552
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.