๐Ÿ” CVE Alert

CVE-2026-5695

UNKNOWN 0.0

Multiple vulnerabilities in the Microweber administration panel

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Arbitrary file upload vulnerability due to a lack of proper validation in upload forms. This allows authenticated users to upload files to the server without restrictions. An attacker could exploit this flaw to execute malicious code remotely (demonstrated by uploading the EICAR test file), which could result in the system being completely compromised.

CWE CWE-434
Vendor microweber
Product administration panel
Published Sep 23, 2026
Last Updated Sep 23, 2026
Stay Ahead of the Next One

Get instant alerts for microweber administration panel

Be the first to know when new unknown vulnerabilities affecting microweber administration panel are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Microweber / Administration panel
2.0.19

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
incibe.es: https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-microweber-administration-panel

Credits

David Aparicio Salcedo