Authorization Bypass Vulnerability in Universe Software Online Registration System
CVE-2026-2406

6.5MEDIUM

What is CVE-2026-2406?

An authorization bypass vulnerability exists in the Online Registration and Workflow Management System from Universe Software Computer Marketing Trade and Industry Inc. This flaw allows attackers to exploit trust in client-side validation mechanisms, potentially granting unauthorized access to sensitive functionalities within the system.

Affected Version(s)

Online Registration and Workflow Management System 0 <= 12022026

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Can Nesimi ARI
.