CVE-2026-82678 | diem-project diem up to 5.1.3 Administrative Console actions.class.php executeCommand dm_command os command injection (Issue 447)
A vulnerability was found in diem-project diem up to 5.1.3. It has been declared as problematic. The affected element is the function executeCommand of the file dmAdminPlugin/modules/dmConsole/actions/actions.class.php of the component Administrative Console. Such manipulation of the argument dm_command leads to os command injection.
This vulnerability is uniquely identified as CVE-2026-82678. The attack can be launched remotely. Moreover, an exploit is present.
The project was informed of the problem early through an issue report but has not responded yet.VulDB Recent EntriesRead More