CVE-2026-67206
HIGHWolf CMS 0.8.3.1 Authenticated RCE via FileManagerController File Upload
Title source: cnaDescription
Wolf CMS through 0.8.3.1 contains a remote code execution vulnerability in FileManagerController that allows authenticated attackers to create arbitrary PHP files by exploiting missing file extension validation in the create_file() and save() functions. Attackers with the file_manager_mkfile capability can write malicious PHP content into the web-accessible FILES_DIR directory and trigger execution by requesting the file over HTTP.
References (2)
Core 2
Core References
Exploit technical-description
exploit
Researcher Disclosure
https://github.com/Caycon/cve-advisories/blob/main/2026/WolfCms/CVE-2026-67206.md
Third Party Advisory third-party-advisory
https://www.vulncheck.com/advisories/wolf-cms-authenticated-rce-via-filemanagercontroller-file-upload
Scores
CVSS v3
8.8
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-434
Status
published
Products (1)
wolfcms/wolfcms
< 0.8.3.1
Published
Jul 30, 2026
Tracked Since
Jul 31, 2026