CVE 9.8 CRITICAL

Airleader Master Unrestricted Upload of File with Dangerous Type_CVE-2026-1358

9.8 / 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Description

Airleader Master versions 6.381 and prior allow for file uploads without
restriction to multiple webpages running maximum privileges. This could
allow an unauthenticated user to potentially obtain remote code
execution on the server.

AI Analysis

Unrestricted file upload vulnerability allowing remote code execution

Basic Information

ID CVE-2026-1358
Source icscert
Published Feb 12, 2026 at 21:24

Affected Product

Vendor Airleader GmbH
Product Airleader Master
Affected Versions Airleader GmbH Airleader Master 0

CWE Classification

AI Assessment

AI Score 9.8 / 10
AI Severity Critical
Vendor Airleader GmbH
Product Airleader Master
Version 6.381 and prior

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.