A vulnerability was found in Tsinghua Unigroup Electronic Archives System 3.2.210802(62532). The affected element is an unknown function of the file /Using/Subject/downLoad.html. Performing a manipulation of the argument path results in path traversal. The attack may be initiated remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.
Metrics
Affected Vendors & Products
References
History
Thu, 19 Feb 2026 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tsinghua Unigroup
Tsinghua Unigroup electronic Archives System |
|
| Vendors & Products |
Tsinghua Unigroup
Tsinghua Unigroup electronic Archives System |
Wed, 18 Feb 2026 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in Tsinghua Unigroup Electronic Archives System 3.2.210802(62532). The affected element is an unknown function of the file /Using/Subject/downLoad.html. Performing a manipulation of the argument path results in path traversal. The attack may be initiated remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Tsinghua Unigroup Electronic Archives System downLoad.html path traversal | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-02-18T23:02:06.726Z
Updated: 2026-02-18T23:02:06.726Z
Reserved: 2026-02-18T13:36:29.062Z
Link: CVE-2026-2683
No data.
Status : Received
Published: 2026-02-18T23:16:21.290
Modified: 2026-02-18T23:16:21.290
Link: CVE-2026-2683
No data.