CNNVD-202601-3322 Information

CNNVD ID

CNNVD-202601-3322

CVE-2026-1197

  • CNNVD Published: 2026-01-20

Description (Chinese)

MineAdmin是MineAdmin开源的一个权限管理系统。 MineAdmin 1.x版本和2.x版本存在访问控制错误漏洞,该漏洞源于对文件/system/downloadById中参数ID的错误操作,可能导致信息泄露。

Description (English)

MineAdmin is a rights management system for the MineAdmin open source. MineAdmin 1.x and 2.x have access control bugs, which stem from the error in the operation of parameter ID in file/system/downloadById, which may lead to the disclosure of information.

Hazard Level

Critical

Vulnerability Type

访问控制错误

Affected Vendor

MineAdmin

Published

2026-01-20

Last Modified

2026-02-24

References

https://github.com/SourByte05/MineAdmin-Vulnerability/issues/2 https://vuldb.com/?ctiid.341782 https://vuldb.com/?id.341782 https://vuldb.com/?submit.734274

Patch

https://github.com/mineadmin/MineAdmin/releases

Share on: