CVE-2026-90788 | magicblack MacCMS10 2026.1000.4055 Template .%40template%40default%40html%40label.html os command injection (Issue 1378)
A vulnerability identified as problematic has been detected in magicblack MacCMS10 2026.1000.4055. Affected by this vulnerability is an unknown functionality of the file /admin1.php/admin/template/index/path/.%40template%40default%40html%40label.html of the component Template Handler. Performing a manipulation results in os command injection.
This vulnerability was named CVE-2026-90788. The attack may be initiated remotely. In addition, an exploit is available.
The project was informed of the problem early through an issue report but has not responded yet.