CVE-2026-51078: Infoleak
Published Jul 27, 2026
·Updated
An issue in Dede CMS v.5.7.118 allows a remote attacker to obtain sensitive information via the str parameter of the filemanagecontrol.php component
Affected Software
1 affected component
DedeCMS Dede CMS=5.7.118
Event History
Jul 27, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-51078?
CVE-2026-51078 has a risk score of 32, indicating a significant vulnerability.
2
How do I fix CVE-2026-51078?
To fix CVE-2026-51078, it is recommended to upgrade to a patched version of Dede CMS beyond v.5.7.118.
3
What type of information can be exposed due to CVE-2026-51078?
CVE-2026-51078 allows a remote attacker to obtain sensitive information via the str parameter.
4
Which component of Dede CMS is affected by CVE-2026-51078?
The affected component in Dede CMS for CVE-2026-51078 is file_manage_control.php.
5
What versions of Dede CMS are vulnerable to CVE-2026-51078?
Dede CMS versions prior to v.5.7.119 are vulnerable to CVE-2026-51078.