Observable Response Discrepancy in HUMANIST Digital Human Resources by Bilin Software
CVE-2026-14202

5.3MEDIUM

What is CVE-2026-14202?

The HUMANIST Digital Human Resources application by Bilin Software and Informatics Consultancy Inc. is exposed to an observable response discrepancy vulnerability. This flaw can potentially allow malicious actors to perform account footprinting, wherein an attacker can infer information about user accounts based on differing responses to requests made to the system. The issue impacts versions 26.0 prior to the fix in 26.1, highlighting the need for immediate attention and remediation.

Affected Version(s)

HUMANIST Digital Human Resources 26.0 < 26.1

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Umut Can Bozkurt
Osman Can Vural
.