Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 27 Feb 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Douco
Douco douphp |
|
| CPEs | cpe:2.3:a:douco:douphp:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Douco
Douco douphp |
Mon, 23 Feb 2026 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:douphp:douphp:*:*:*:*:*:*:*:* |
Tue, 10 Feb 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Douphp
Douphp douphp |
|
| Vendors & Products |
Douphp
Douphp douphp |
Mon, 09 Feb 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 09 Feb 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in DouPHP up to 1.9. This issue affects some unknown processing of the file /admin/file.php of the component ZIP File Handler. Such manipulation of the argument sql_filename leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | |
| Title | DouPHP ZIP File file.php unrestricted upload | |
| Weaknesses | CWE-284 CWE-434 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-02-23T09:59:32.354Z
Reserved: 2026-02-08T16:09:56.196Z
Link: CVE-2026-2226
Updated: 2026-02-09T13:55:53.212Z
Status : Analyzed
Published: 2026-02-09T10:15:57.683
Modified: 2026-04-29T01:00:01.613
Link: CVE-2026-2226
No data.
OpenCVE Enrichment
Updated: 2026-04-17T21:30:28Z