CVE-2026-82780

Summary

Unrestricted upload of file with dangerous type issue exists in CONPROSYS TM Series. If a specially crafted file is uploaded by a remote authenticated attacker, an arbitrary command may be executed on the product.

Affected Software

VendorProductVersion RangeStatus
Contec Co., LtdCPS-TM341G5MB-ADSC1-9310 < 2.19affected
Contec Co., LtdCPS-TM341MB-ADSC1-9310 < 2.19affected
Contec Co., LtdCPS-TM341GMB-ADSC1-9310 < 2.19affected

Weaknesses

  • CWE-434: Unrestricted upload of file with dangerous type

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References