Missing Authentication Vulnerability in NewSiteServer by CyberTutor
CVE-2026-19853
6.9MEDIUM
What is CVE-2026-19853?
NewSiteServer (NSS) developed by CyberTutor contains a vulnerability that allows unauthenticated remote attackers to exploit a specific function to send emails impersonating the school's domain. This flaw exposes the system to potential misuse, leading to unauthorized communication and possible phishing attacks. Organizations using NSS should take immediate action to mitigate this risk.
Affected Version(s)
NewSiteServer (NSS) all
