Threats Tagged 'cve-2026-76174'
View all threats tagged with 'cve-2026-76174'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-76174'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-76174: CWE-434 Unrestricted upload of file with dangerous type in OCS Inventory NG OcsreportsCVE-2026-76174 0 Unrestricted file upload vulnerability in the CSV file upload functionality of the Ocsreports admin_info endpoint. The application validates files solely based on the name provided by the client, without properly checking their content or securely restricting the permitted file types. This allows a user with administrator privileges to upload PHP files to a directory accessible via the web interface. If the file is subsequently processed by the server, an attacker could execute arbitrary code with the privileges of the account used by the web service. Join the discussion | CVE Database V5 | 09/03/2026, 09:38:05 UTC Added: 09/03/2026, 09:52:54 UTC |
Showing 1 to 1 of 1 result