CVE-2026-95263

Published: Ott 05, 2026 Last Modified: Ott 05, 2026
ExploitDB:
Other exploit source:
Google Dorks:

Description

AI Translation Available

Feehi CMS 2.1.1 is vulnerable to Incorrect Access Control. A low-privilege backend administrator with administrator-update permission can change the password of the built-in super administrator account. The server does not enforce protection for this account, and the update scenario does not require the old password.

https://github.com/liufee/cms
https://github.com/tao0845/CVE-Request/blob/main/CVE-2026-95263.md