CVE-2026-32867
EUVD-2026-1312619.03.2026, 16:16
OPEXUS eComplaint before version 10.1.0.0 allows an unauthenticated attacker to obtain or guess an existing case number and upload arbitrary files via 'Portal/EEOC/DocumentUploadPub.aspx'. Users would see these unexpected files in cases. Uploading a large number of files could consume storage.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| opexustech | ecase_ecomplaint | 𝑥 < 10.1.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration