Back to overview

CVE-2026-2406

MEDIUM
6.5
CVSS 3.1
Description
Authorization bypass through User-Controlled key vulnerability in Universe Software Computer Marketing Trade and Industry Inc. Online Registration and Workflow Management System allows Exploiting Trust in Client. This issue affects Online Registration and Workflow Management System: through 12022026.

Metadata

CVE ID
CVE-2026-2406
State
PUBLISHED
Assigner
TR-CERT
Reserved
2026-02-12 13:25 UTC
Published
2026-07-22 08:51 UTC
Last updated
2026-07-22 08:51 UTC
Primary CWE
CWE-639
CWE-639 Authorization bypass through User-Controlled key
Vendor / Product
Universe Software Computer Marketing Trade and Industry Inc. / Online Registration and Workflow Management System
Sources
cve.org  ·  NVD

Severity & Metrics

6.5 MEDIUM CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Affected products (1)
VendorProductPlatformVersions
Universe Software Computer Marketing Trade and Industry Inc. Online Registration and Workflow Management System 0 ≤ 12022026
Weakness (CWE)
CWESourceDescription
CWE-639 cna CWE-639 Authorization bypass through User-Controlled key
CVSS scores (1)
ScoreSeverityVersionSourceVector
6.5 MEDIUM 3.1 cna CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Back to overview