CVE-2026-10550

Source
https://cve.org/CVERecord?id=CVE-2026-10550
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-10550.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-10550
Published
2026-06-02T00:45:10.375Z
Modified
2026-07-24T03:56:43.437847692Z
Severity
  • 2.1 (Low) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P CVSS Calculator
Summary
elunez eladmin Application Deployment App.java command injection
Details

A weakness has been identified in elunez eladmin up to 2.7. This vulnerability affects unknown code of the file App.java of the component Application Deployment Module. This manipulation of the argument uploadPath causes command injection. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be used for attacks. The project was informed of the problem early through an issue report but has not responded yet.

Database specific
{
    "cna_assigner": "VulDB",
    "unresolved_ranges": [
        {
            "source": "AFFECTED_FIELD",
            "extracted_events": [
                {
                    "introduced": "2.0"
                },
                {
                    "last_affected": "2.0"
                },
                {
                    "introduced": "2.1"
                },
                {
                    "last_affected": "2.1"
                },
                {
                    "introduced": "2.2"
                },
                {
                    "last_affected": "2.2"
                },
                {
                    "introduced": "2.3"
                },
                {
                    "last_affected": "2.3"
                },
                {
                    "introduced": "2.4"
                },
                {
                    "last_affected": "2.4"
                },
                {
                    "introduced": "2.5"
                },
                {
                    "last_affected": "2.5"
                },
                {
                    "introduced": "2.6"
                },
                {
                    "last_affected": "2.6"
                }
            ]
        }
    ],
    "cwe_ids": [
        "CWE-74",
        "CWE-77"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/10xxx/CVE-2026-10550.json"
}
References

Affected packages

Git / github.com/elunez/eladmin

Affected ranges

Type
GIT
Repo
https://github.com/elunez/eladmin
Events
Database specific
{
    "source": "AFFECTED_FIELD",
    "extracted_events": [
        {
            "introduced": "2.7"
        },
        {
            "last_affected": "2.7"
        }
    ]
}

Affected versions

2.*
2.7
v2.*
v2.7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-10550.json"