Missing Authorization Vulnerability in Liman MYS by HAVELSAN Inc.
CVE-2026-17070

8.8HIGH

Key Information:

Status
Vendor
CVE Published:
4 August 2026

What is CVE-2026-17070?

An authorization flaw in Liman MYS by HAVELSAN Inc. allows unauthorized access to functionalities not properly limited by Access Control Lists (ACLs). This vulnerability can be exploited by attackers to perform actions without the necessary permissions, potentially compromising the system's integrity and data security. Affected versions range from 2.2.3 up to, but not including, 2.3.1.

Affected Version(s)

Liman MYS 2.2.3 < 2.3.1

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Ahmet Sadık ŞAHİNER
.