PT-2026-22297 · Sanluan · Sanluan Publiccms

Saul1213

+1

·

Publicado

2026-02-27

·

Atualizado

2026-02-27

·

CVE-2026-3289

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Sanluan PublicCMS version 6.202506.d
Description A weakness exists in Sanluan PublicCMS 6.202506.d, specifically within the saveMetadata function of the TemplateCacheComponent.java file in the Template Cache Generation component. A manipulation can lead to a path traversal. The attack can be executed remotely. An exploit has been publicly released. The vendor was contacted prior to disclosure but did not respond.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-3289

Produtos afetados

Sanluan Publiccms