---
id: CVE-2026-75413
title: DocSys V2.02.80 is vulnerable to Any File Download
summary: >-
  DocSys V2.02.80 is vulnerable to Any File Download. An attacker does not need
  to go through authentication to utilize the downloadDocEx.do interface and
  download any file via the parameter targetPath.
severity: high
cvss: 7.5
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'
cwe:
  - CWE-552
published: '2026-08-26'
updated: '2026-09-09'
sourceUpdated: '2026-09-09T16:04:24.933'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-75413'
references:
  - url: 'https://github.com/RainyGao-GitHub/DocSys/issues/48'
    label: cve@mitre.org
  - url: 'https://github.com/RainyGao-GitHub/DocSys/issues/48'
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
tags:
  - nvd
epss: 0.0048
epssPercentile: 0.38749
ingestedAt: '2026-09-09T16:14:05.516Z'
---

## Overview

DocSys V2.02.80 is vulnerable to Any File Download. An attacker does not need to go through authentication to utilize the downloadDocEx.do interface and download any file via the parameter targetPath.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
