关键漏洞信息 漏洞概述 漏洞类型: Path Traversal 漏洞标识: CVE-2026-2672, GCVE-100-346468 CVE: CVE-2026-2672 CVSS Score: - CVSS v4: 3.9 - CVSS v3: 4.3 - CVSS v2: 3.9 影响的产品 Vendor: Tsinghua Unigroup Product: Electronic Archives System Version: 3.2.210802(62532) 漏洞细节 受影响函数: in 问题: Manipulating the argument can lead to path traversal. 漏洞分类: CWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')) 利用信息 公开利用代码: Available with proof-of-concept exploit. 可远程利用: Yes 价格预测: $0-$5k 威胁情报 兴趣度: 4.26 活跃威胁行为者: Not specified APT组织: Not specified 时间线 披露日期: 2026-02-18 VulDB entry 创建日期: 2026-02-18 可用性 Countermeasures: No mitigation known.