Any File Download Vulnerability in DocSys by RainyGao
CVE-2026-75413
7.5HIGH
What is CVE-2026-75413?
DocSys V2.02.80 contains a vulnerability that permits unauthorized users to download any file by exploiting the downloadDocEx.do interface. This issue arises from a lack of authentication checks. An attacker can manipulate the targetPath parameter to access sensitive files, posing significant risks to data integrity and confidentiality.
