A weakness has been identified in Sanluan PublicCMS up to 6.202506.e. This vulnerability affects the function CmsContentAdminController of the file publiccms-parent/publiccms-core/src/main/java/com/p…
Low CVSS 2.7
Summary
A weakness has been identified in Sanluan PublicCMS up to 6.202506.e. This vulnerability affects the function CmsContentAdminController of the file publiccms-parent/publiccms-core/src/main/java/com/publiccms/controller/admin/sys/SysUserAdminController.java of the component exportExcel/exportData. This manipulation of the argument userId/deptId causes authorization bypass. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be used for atta…
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Sources
- NVD DATABASE
Original Links
- https://github.com/aibot88/CVERequest/blob/main/PublicCMS/issue7.md
- https://vuldb.com/cve/CVE-2026-97721
- https://vuldb.com/submit/910956
- https://vuldb.com/vuln/409820
- https://vuldb.com/vuln/409820/cti
Timeline
- nvd_ingest NVD