Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 09 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 09 Jun 2026 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dcatadmin
Dcatadmin dcat Admin |
|
| Vendors & Products |
Dcatadmin
Dcatadmin dcat Admin |
Tue, 09 Jun 2026 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in Dcat-Admin up to 2.2.3-beta. This impacts the function editorMDUpload of the file /admin/dcat-api/editor-md/upload of the component User Setting Page. This manipulation of the argument editormd-image-file causes unrestricted upload. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks. | |
| Title | Dcat-Admin User Setting upload editorMDUpload unrestricted upload | |
| First Time appeared |
Dcat-admin
Dcat-admin dcat-admin |
|
| Weaknesses | CWE-284 CWE-434 |
|
| CPEs | cpe:2.3:a:dcat-admin:dcat-admin:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Dcat-admin
Dcat-admin dcat-admin |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-06-09T15:13:39.885Z
Reserved: 2026-06-08T20:16:41.623Z
Link: CVE-2026-11621
Updated: 2026-06-09T14:57:09.356Z
Status : Deferred
Published: 2026-06-09T03:16:26.210
Modified: 2026-06-09T13:33:34.393
Link: CVE-2026-11621
No data.
OpenCVE Enrichment
Updated: 2026-06-09T05:00:18Z