CVE-2026-75413EPSS p39.3%
CVE-2026-75413CVE-2026-75413
Description
DocSys V2.02.80 is vulnerable to Any File Download. An attacker does not need to go through authentication to utilize the downloadDocEx.do interface and download any file via the parameter targetPath.
Scoring
| CVSS | 7.5 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
| EPSS | 0.48% probability of exploitation · percentile 39.3% · 2026-10-05T12:00:23Z |
| Last modified | 2026-09-09 |