CVE-2026-74845: 2100 Technology|Official Document Management System - Arbitrary File Upload
Official Document Management System developed by 2100 Technology has an Arbitrary File Upload vulnerability, allowing authenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
2100 Technology|Official Document Management Systemto a version that resolves this vulnerability.Fixed in 5.0.105
Event History
Frequently Asked Questions
What is the severity of CVE-2026-74845?
CVE-2026-74845 has a high severity rating of 8.8 according to the CVSS scoring system.
How do I fix CVE-2026-74845?
To fix CVE-2026-74845, update the Official Document Management System to the latest version that addresses the arbitrary file upload vulnerability.
What type of vulnerability is CVE-2026-74845?
CVE-2026-74845 is classified as an arbitrary file upload vulnerability, allowing attackers to upload and execute malicious files.
What can attackers do with CVE-2026-74845?
Attackers can exploit CVE-2026-74845 to upload web shell backdoors, enabling them to execute arbitrary code on the server.
Who is affected by CVE-2026-74845?
Users of the 2100 Technology Official Document Management System are affected by CVE-2026-74845.