CRITICALVulnerability
CVE-2026-80235
EFence developed by Thinking Software Technology has an Arbitrary File Upload vulnerability. Unauthenticated remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.
Properties
- severity
- CRITICAL
- score
- 9.8
- epss_score
- 0.00677
- cve_id
- CVE-2026-80235
- vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- published_at
- 2026-08-26T09:16:49.027
- last_modified
- 2026-09-03T05:15:19.850
- epss_percentile
- 0.49964
Related Entities (3)
ENRICHED_BY (1)
→[Source]FIRST EPSS
DESCRIBED_BY (1)
→[Source]NVD
HAS_WEAKNESS (1)
→[Weakness]Unrestricted Upload of File with Dangerous Type
Explore deeper with Ninja Signal's threat intelligence graph