What is CVE-2026-67243?
CVE-2026-67243 is an unrestricted file upload vulnerability in freo2, a product provided by refirio. A user with the highest-level administrative privileges can upload an executable file and execute arbitrary OS commands. Strict access control and file type restrictions should be implemented to mitigate the risk.
Azərbaycanca: CVE-2026-67243, refirio tərəfindən təchiz edilən freo2 məhsulunda "unrestricted file upload" zəifliyidir. Ən yüksək səviyyəli inzibati səlahiyyətlərə malik istifadəçi təhlükəli tipdə fayl yükləyə və əməliyyat sistemində ixtiyari əmrlər icra edə bilər. İnzibati girişlərin ciddi nəzarəti və fayl yükləmə məhdudiyyətləri tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-434
FAQ2
What privilege level is required to exploit CVE-2026-67243?
Exploiting this vulnerability requires a user with the highest-level administrative privileges.
In which product was CVE-2026-67243 discovered?
This vulnerability was discovered in the freo2 product provided by refirio.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.