HackerFeeds
All CVEs

CVE-2026-80235

CRITICAL9.8

Published 2026-08-26 · Updated 2026-08-26 · Source twcert@cert.org.tw

Description

EFence developed by Thinking Software Technology has an Arbitrary File Upload vulnerability. Unauthenticated remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.

CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CWE-434
View on NVD