Incorrect Authorization Vulnerability in Vendor Product
CVE-2026-14167
8.7HIGH
What is CVE-2026-14167?
A low privileged remote attacker may exploit a vulnerability in Vendor Product, enabling them to execute privileged configuration changes typically restricted to administrators. This occurs due to a flaw in the authorization mechanism, allowing unauthorized actions such as permission management, which could compromise system security and integrity.
Affected Version(s)
DVG-IRF1401 1.0.0 < 2.3.0
DVG-IRF1421 1.0.0 < 2.3.0
DVG-IRF3401 1.0.0 < 2.3.0
