Arbitrary File Upload Vulnerability in NewSiteServer by CyberTutor
CVE-2026-19852
5.1MEDIUM
What is CVE-2026-19852?
The NewSiteServer (NSS) platform developed by CyberTutor is susceptible to an Arbitrary File Upload vulnerability, which allows unauthenticated remote attackers to upload arbitrary files. This includes potentially malicious HTML files that could facilitate attacks resembling cross-site scripting. Such vulnerabilities pose a significant risk as they may enable unauthorized access or disrupt the functionality of web applications.
Affected Version(s)
NewSiteServer (NSS) all
