← العودة للجدول
CVE-2026-12066
CVE-2026-12066 — A security flaw has been discovered in PbootCMS up to 3.2.12. This vulnerability
📅 2026-06-12
🟠 High 🔥 No NVD Exploit Web CVSS 7.3

📋 الوصف الكامل

A security flaw has been discovered in PbootCMS up to 3.2.12. This vulnerability affects the function retrieve of the file apps/home/controller/MemberController.php of the component Password Handler. The manipulation of the argument username/password/email/checkcode results in weak password recovery. It is possible to launch the attack remotely. The exploit has been released to the public and may

💻 الأنظمة المتأثرة

PHP

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-12066

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2026-12066 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←