CVE-2026-16252

Severity CVSS v4.0:
MEDIUM
Type:
CWE-74 Injection
Publication date:
20/07/2026
Last modified:
20/07/2026

Description

A security flaw has been discovered in Beijing Shenzhou Shihan Technology Multimedia Integrated Business Display System 8.2.2. Impacted is an unknown function of the file /admin/system/structure/updateStructure/deflate/Insecure/Staffshinel Ds.jsp?Shine ID=aaa. The manipulation of the argument Structure_ID results in sql injection. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks.