Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.8
CVE-2026-67688: ICS-Park Smart Park Management System v2.0 allows arbitrary code execution
CVE-2026-67688 · published 28 days ago
Summary
An attacker can upload malicious files to the system, potentially executing unauthorized code. This could compromise the system's security and allow the attacker to take control. To protect your system, ensure that you have the latest security patches and consider implementing additional security measures to limit file uploads.
Original advisory text
ICS-Park Smart Park Management System v2.0 contains an unrestricted file upload vulnerability in the file upload module. This allows a remote attacker to execute arbitrary code.
ICS-Park Smart Park Management System v2.0 contains an unrestricted file upload vulnerability in the file upload module. This allows a remote attacker to execute arbitrary code.
Severity
9.8
Critical
Exploitation
EPSS <1%
Type
CWE-434Unrestricted File Upload
Timeline
Published6 Aug 2026
Updated3 Sep 2026
First seen6 Aug 2026
Sources
CVE-2026-67688 · NVD
Monitor software like this
Free during beta