Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Waz1Nr9

#45342of 57,362
6.5Total CVSS
Vulnerabilities · 1
PT-2026-99882
6.5
2026-09-28
Acrel Electrical · Unet Web Service · CVE-2026-101071
**Name of the Vulnerable Software and Affected Versions** Acrel Electric Unet Web Service versions prior to 20260814 **Description** A remote unrestricted upload issue exists within the Upload Endpoint component. By manipulating the `File` argument at the '/exchange/attachment/upload' endpoint, an attacker can upload files without proper restrictions. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability. Restrict access to the '/exchange/attachment/upload' endpoint to minimize the risk of exploitation.