CVE-2026-86669 | aircheng-org iWebShop-5 up to 5.15 systemseller.php login Name improper authentication

SecurityVulns

A vulnerability has been found in aircheng-org iWebShop-5 up to 5.15 and classified as critical. This affects the function Login of the file controllers/systemseller.php. Performing a manipulation of the argument Name results in improper authentication.

This vulnerability is cataloged as CVE-2026-86669. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.

The project was informed of the problem early through an issue report but has not responded yet.VulDB Recent EntriesRead More