SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-51078

HIGH · CVSS 7.5 EPSS 0.32%

Source: NVD + CISA KEV + EPSS · Published 2026-07-27 · Last synced 2026-08-26

CyberRota Analysis

AI-Generated

Dede CMS version 5.7.118 is vulnerable to a remote information disclosure attack through the str parameter in the file_manage_control.php component, potentially exposing sensitive data to unauthorized users. Organizations using this CMS should prioritize patching this vulnerability to mitigate the risk of data breaches. Given the high severity rating, immediate action is recommended to protect against potential exploitation.

CVE
CVE-2026-51078
Severity
HIGH
CVSS
7.5
EPSS
0.32%

Original NVD Description

An issue in Dede CMS v.5.7.118 allows a remote attacker to obtain sensitive information via the str parameter of the file_manage_control.php component