Sensitive Information Exposure in TÜBİTAK BİLGEM eta-otp-lock
CVE-2026-18915

5MEDIUM

What is CVE-2026-18915?

The eta-otp-lock software from TÜBİTAK BİLGEM is susceptible to a vulnerability involving the invocation of processes that expose sensitive information. This can allow attackers to conduct system footprinting, potentially leading to unauthorized access or exploitation of the system. Users are advised to upgrade to version 1.0.4 or later to mitigate this risk.

Affected Version(s)

eta-otp-lock 0 < 1.0.4

References

CVSS V3.1

Score:
5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Emirhan YÜCEL
.