CVE-2026-2666
18.02.2026, 20:18
A flaw has been found in mingSoft MCMS 6.1.1. The affected element is an unknown function of the file /ms/file/uploadTemplate.do of the component Template Archive Handler. Executing a manipulation of the argument File can lead to unrestricted upload. The attack can be launched remotely. The exploit has been published and may be used.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mingsoft | mcms | 6.1.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration