SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-57799

HIGH · CVSS 7.5 EPSS 0.37%

Source: NVD + CISA KEV + EPSS · Published 2026-07-13 · Last synced 2026-08-12

CyberRota Analysis

AI-Generated

The vulnerability in the uxper Nuss application allows for local file inclusion due to improper control of filenames in PHP include/require statements. This can lead to unauthorized access to sensitive files on the server, potentially exposing critical data or enabling further exploitation. Organizations using Nuss versions up to 1.3.6 should prioritize patching this vulnerability to mitigate the risk of data breaches and system compromise.

CVE
CVE-2026-57799
Severity
HIGH
CVSS
7.5
EPSS
0.37%

Original NVD Description

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in uxper Nuss nuss allows PHP Local File Inclusion.This issue affects Nuss: from n/a through <= 1.3.6.