CyberRota Analysis
AI-GeneratedDede CMS version 5.7.118 is vulnerable to a remote information disclosure attack through the str parameter in the file_manage_control.php component, potentially exposing sensitive data to unauthorized users. Organizations using this CMS should prioritize patching this vulnerability to mitigate the risk of data breaches. Given the high severity rating, immediate action is recommended to protect against potential exploitation.
CVE
CVE-2026-51078
Severity
HIGH
CVSS
7.5
EPSS
0.32%
Original NVD Description
An issue in Dede CMS v.5.7.118 allows a remote attacker to obtain sensitive information via the str parameter of the file_manage_control.php component