A vulnerability was identified in Tsinghua Unigroup Electronic Archives System 3.2.210802(62532). This issue affects some unknown processing of the file /System/Cms/downLoad. The manipulation of the argument path leads to path traversal. The attack can be initiated remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
Metrics
Affected Vendors & Products
References
History
Mon, 09 Mar 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tsinghua Unigroup
Tsinghua Unigroup electronic Archives System |
|
| Vendors & Products |
Tsinghua Unigroup
Tsinghua Unigroup electronic Archives System |
Sun, 08 Mar 2026 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was identified in Tsinghua Unigroup Electronic Archives System 3.2.210802(62532). This issue affects some unknown processing of the file /System/Cms/downLoad. The manipulation of the argument path leads to path traversal. The attack can be initiated remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Tsinghua Unigroup Electronic Archives System downLoad path traversal | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-03-08T07:02:11.069Z
Updated: 2026-03-08T07:02:11.069Z
Reserved: 2026-03-07T12:17:00.946Z
Link: CVE-2026-3719
No data.
Status : Awaiting Analysis
Published: 2026-03-08T08:15:59.710
Modified: 2026-03-09T13:35:07.393
Link: CVE-2026-3719
No data.