CNNVD-202601-3323 Information

CNNVD ID

CNNVD-202601-3323

CVE-2026-1196

  • CNNVD Published: 2026-01-20

Description (Chinese)

MineAdmin是MineAdmin开源的一个权限管理系统。 MineAdmin 1.x版本和2.x版本存在访问控制错误漏洞,该漏洞源于对文件/system/getFileInfoById中参数ID的错误操作,可能导致信息泄露。

Description (English)

MineAdmin is a rights management system for the MineAdmin open source. MineAdmin 1.x and 2.x have access control bugs that stem from an error in the performance of parameter ID in file/system/getFileInfoById, which may lead to the disclosure of information.

Hazard Level

Critical

Vulnerability Type

访问控制错误

Affected Vendor

MineAdmin

Published

2026-01-20

Last Modified

2026-02-24

References

https://github.com/SourByte05/MineAdmin-Vulnerability/issues/3 https://vuldb.com/?ctiid.341781 https://vuldb.com/?id.341781 https://vuldb.com/?submit.734273

Patch

https://github.com/mineadmin/MineAdmin/releases

Share on: