Improper Authorization in MineAdmin Versions 1.x and 2.x
CVE-2026-1193

5.3MEDIUM

Key Information:

Vendor

MineAdmin

Status
Vendor
CVE Published:
19 January 2026

Badges

๐Ÿ‘พ Exploit Exists๐ŸŸก Public PoC

What is CVE-2026-1193?

A security flaw exists in MineAdmin versions 1.x and 2.x that affects the file /system/cache/view within the View Interface component. This vulnerability allows attackers to manipulate the system, leading to improper authorization processes. The exploit can be executed remotely, making it particularly concerning as publicly available exploitation techniques have been identified. Despite early contact with the vendor regarding this issue, no response has been received, indicating a potential risk for users of the affected versions.

Affected Version(s)

MineAdmin 1.*

MineAdmin 2.*

Exploit Proof of Concept (PoC)

PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.

References

CVSS V4

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • ๐ŸŸก

    Public PoC available

  • ๐Ÿ‘พ

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

Credit

sourbyte (VulDB User)
.