CVE-2026-5695
Multiple vulnerabilities in the Microweber administration panel
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Arbitrary file upload vulnerability due to a lack of proper validation in upload forms. This allows authenticated users to upload files to the server without restrictions. An attacker could exploit this flaw to execute malicious code remotely (demonstrated by uploading the EICAR test file), which could result in the system being completely compromised.
| CWE | CWE-434 |
| Vendor | microweber |
| Product | administration panel |
| Published | Sep 23, 2026 |
| Last Updated | Sep 23, 2026 |
Stay Ahead of the Next One
Get instant alerts for microweber administration panel
Be the first to know when new unknown vulnerabilities affecting microweber administration panel are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Microweber / Administration panel
2.0.19
References
Credits
David Aparicio Salcedo