Retour à la veille

CVE-2026-97818

Publié : 25 septembre 2026
Modifié : 25 septembre 2026
Lien officiel NVD
Score CVSS
8.6
HIGH

Description détaillée

phpIPAM through 1.8.3 has incorrect authorization for id=="admins" and id=="all" in api/controllers/User.php.

Vecteur d'attaque (CVSS)

Vecteur brut :CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N

Références et Patchs