Unrated severityNVD Advisory· Published Jul 4, 2026· Updated Jul 6, 2026
CVE-2026-12195
CVE-2026-12195
Description
myVesta is affected by an authenticated remote code execution vulnerability. Low privileged users can insert arbitrary commands as a part of the v_ftp_user parameter when deleting FTP usernames. This could result in the execution of commands as the admin user or takevoer of the admin user in myVesta.
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.