Medium severity5.9NVD Advisory· Published Mar 20, 2022· Updated Jun 17, 2026
CVE-2022-26247
CVE-2022-26247
Description
TMS v2.28.0 contains an insecure permissions vulnerability via the component /TMS/admin/user/Update2. This vulnerability allows attackers to modify the administrator account and password.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- TMS/TMSdescription
- Range: <=2.28.0
Patches
Vulnerability mechanics
References
1- github.com/xiweicheng/tms/issues/16nvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.