Project Subscriptions
No data.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 02 Jun 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 02 Jun 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CWE-20: Improper Input Validation in web services in Progress Sitefinity 14.1.x through 14.3.x, 14.4.x before 14.4.8152, 15.0.x before 15.0.8234, 15.1.x before 15.1.8335, 15.2.x before 15.2.8441, 15.3.x before 15.3.8531, and 15.4.x before 15.4.8630 allows a remote unauthenticated attacker to compromise the integrity and confidentiality of user accounts. Successful exploitation requires user interaction and a non-default site configuration. | |
| Title | CWE-20: Improper Input Validation in web services in Progress Sitefinity | |
| Weaknesses | CWE-20 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: ProgressSoftware
Published:
Updated: 2026-06-02T16:05:47.896Z
Reserved: 2026-04-27T13:49:22.749Z
Link: CVE-2026-7195
Updated: 2026-06-02T16:05:43.816Z
Status : Awaiting Analysis
Published: 2026-06-02T14:17:14.073
Modified: 2026-06-02T14:48:39.190
Link: CVE-2026-7195
No data.
OpenCVE Enrichment
Updated: 2026-06-02T15:45:06Z