CVE-2026-2165Disclosure(detronetdip / e-commerce)

LOWCVSS 9.8 · CRITICAL

Exploitation ongoing with high activity in latest observed window (2 mentions)

Immediate actions

  • Prioritize remediation for detronetdip e-commerce systems immediately
  • Assume compromise if assets are exposed
  • Track advisory updates for patch or workaround availability

Recommended action window: Immediate (within 24h)

NVD description

A weakness has been identified in detronetdip E-commerce 1.0.0. Impacted is an unknown function of the file /Admin/assets/backend/seller/add_seller.php of the component Account Creation Endpoint. Executing a manipulation of the argument email can lead to missing authentication. The attack can be executed remotely. The exploit has been made available to the public and could be used for attacks. The project was informed of the problem early through an issue report but has not responded yet.

3.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-287CWE-306

Priority

LOW

Exploitation

ACTIVE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • e-commerce

Threat summary

  • Active exploitation appears in 1 classified signals
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Technical details provided in 1 signal
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked at 2 mentions on most recent observed day (2026-02-09)
  • 3 total mentions across 2 days

Affected systems

Products
e-commerce

1 version affected across 1 product

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-02-08: 1Mentions · 2026-02-09: 2Active Exploitation · 2026-02-09: 1Technical Details · 2026-02-09: 102-0802-09
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets7 URLs
Classification over time
DateTotalLabels
2026-02-081
General1
2026-02-092
Disclosure2
Full discourse3 posts
  • NerdieNews@NewsNerdie
    Disclosure

    Today's Top Cybersecurity News – February 09, 2026 1. Critical 0-Day Remote Code Execution Vulnerability in BeyondTrust Remote Access A critical pre-authentication remote code execution vulnerability (CVE-2026-1731) has been disclosed in BeyondTrust Remote Support and Privileged Remote Access products. This flaw allows attackers to execute arbitrary code remotely without prior authentication, posing a severe risk to affected systems. Sources: Cvefeed, Gbhackers https://cybersecuritynews.com/beyondtrust-remote-access-products-0-day-vulnerability/ 2. TGR-STA-1030 Linux Rootkit Spies on 37 Nations in State-Aligned Campaign The TGR-STA-1030 threat actor has deployed a sophisticated Linux rootkit to conduct cyber espionage targeting government networks across 37 countries between November and December 2025. Multiple critical vulnerabilities, including CVE-2026-1731 and others, were exploited to facilitate stealthy infiltration and data exfiltration. Sources: Bleepingcomputer, Cvefeed https://securityonline.info/jackma-shadowguard-tgr-sta-1030-spies-on-37-nations-via-linux-rootkit/ 3. Two Critical Remote Code Execution Vulnerabilities in detronetdip E-commerce 1.0.0 Two severe vulnerabilities in detronetdip E-commerce 1.0.0 allow remote attackers to bypass authentication via add_seller.php and perform unrestricted file uploads via addadhar.php. Both exploits have been publicly disclosed, increasing the risk of unauthorized access and potential system compromise. Sources: Cvefeed https://cvefeed.io/vuln/detail/CVE-2026-2165 4. Notepad++ Hack, Office & ESXi 0-Day Vulnerabilities Fuel Ransomware Attacks Recent exploits targeting Notepad++, Microsoft Office, and VMware ESXi have introduced critical zero-day vulnerabilities actively leveraged in ransomware campaigns. These vulnerabilities pose significant risks to enterprise environments, demanding urgent patching and mitigation efforts. Sources: Cvefeed https://cybersecuritynews.com/cybersecurity-newsletter-weekly-february/ 5. Critical Privilege Escalation Vulnerabilities in JAY Login & Register Plugin <= 2.6.03 Two critical privilege escalation vulnerabilities affect the JAY Login & Register WordPress plugin versions up to 2.6.03. Authenticated users with Subscriber access and unauthenticated attackers can exploit these flaws to gain administrator privileges by manipulating user meta via AJAX functions. Sources: Cvefeed https://cvefeed.io/vuln/detail/CVE-2025-15100 Stay sharp. Stay secure. #NerdieNews #InfoSec #CyberSecurity #TechNews #DataSecurity #CyberThreats

    Post summary

    The article announces the disclosure of CVE‑2026‑1731, a critical remote‑code‑execution flaw in BeyondTrust Remote Access, and notes its exploitation in the TGR‑STA‑1030 rootkit campaign and other ransomware attacks.

    0000083
    54 followersView on X
  • RedPacket Security@RedPacketSec
    Disclosure

    CVE Alert: CVE-2026-2165 - detronetdip - E-commerce - https://www.redpacketsecurity.com/cve-alert-cve-2026-2165-detronetdip-e-commerce/ #OSINT #ThreatIntel #CyberSecurity #cve-2026-2165 #detronetdip #e-commerce

    Post summary

    The post announces a CVE alert for CVE-2026-2165 related to detronetdip in e-commerce, linking to a Red Packet Security page, but does not provide any technical or exploit details.

    0000092
    3.5K followersView on X
  • CVE@CVEnew
    General

    CVE-2026-2165 A weakness has been identified in detronetdip E-commerce 1.0.0. Impacted is an unknown function of the file /Admin/assets/backend/seller/add_seller.php of the component… https://www.cve.org/CVERecord?id=CVE-2026-2165

    Post summary

    The post briefly references CVE-2026-2165, noting a weakness in detronetdip E-commerce 1.0.0, but provides no detailed technical information, exploitation evidence, or mitigation guidance.

    00000197
    56.5K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appdetronetdipe-commerce1.0.0--

Explore more