NewSiteServer (NSS) developed by CyberTutor has an Arbitrary File Upload vulnerability. Unauthenticated remote attackers can upload arbitrary files, including malicious HTML files, thereby achieving effects similar to cross-site scripting.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
Contact the vendor to take remedial measures
Workaround
No workaround given by the vendor.
References
History
Mon, 24 Aug 2026 04:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | NewSiteServer (NSS) developed by CyberTutor has an Arbitrary File Upload vulnerability. Unauthenticated remote attackers can upload arbitrary files, including malicious HTML files, thereby achieving effects similar to cross-site scripting. | |
| Title | CyberTutor|NewSiteServer (NSS) - Arbitrary File Upload | |
| Weaknesses | CWE-434 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2026-08-24T03:35:01.364Z
Reserved: 2026-08-14T09:35:03.910Z
Link: CVE-2026-19852
No data.
Status : Received
Published: 2026-08-24T04:16:57.517
Modified: 2026-08-24T04:16:57.517
Link: CVE-2026-19852
No data.
OpenCVE Enrichment
Updated: 2026-08-24T05:30:12Z
Weaknesses