CRITICALVulnerability

CVE-2026-80235

EFence developed by Thinking Software Technology has an Arbitrary File Upload vulnerability. Unauthenticated remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.

Properties

severity
CRITICAL
score
9.8
epss_score
0.00677
cve_id
CVE-2026-80235
vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
published_at
2026-08-26T09:16:49.027
last_modified
2026-09-03T05:15:19.850
epss_percentile
0.49964

Related Entities (3)

ENRICHED_BY (1)

[Source]FIRST EPSS

DESCRIBED_BY (1)

[Source]NVD

HAS_WEAKNESS (1)

[Weakness]Unrestricted Upload of File with Dangerous Type

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-80235 — Ninja Signal Threat Intelligence | Ninja Signal