6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability has been found in Fujian Apex LiveBOS up to 2.0. Impacted is an unknown function of the file /feed/UploadImage.do of the component Endpoint. Such manipulation of the argument filename leads to path traversal. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 2.1 is recommended to address this issue. Upgrading the affected component is advised.
Basic Information
ID
CVE-2026-7519
Source
VulDB
Published
May 1, 2026 at 00:45
Affected Product
Vendor
Fujian Apex
Product
LiveBOS
Version
2.0
Affected Versions
Fujian Apex LiveBOS 2.0