Client-Side Enforcement Vulnerability in Vendor's Product
CVE-2026-59504

9.1CRITICAL

What is CVE-2026-59504?

A security vulnerability exists in Vendor's Product due to client-side enforcement of server-side security measures. This vulnerability allows attackers to bypass these security controls, potentially leading to unauthorized access or manipulation of system resources. It is critical for users and organizations utilizing this product to be aware of this flaw and implement necessary updates or mitigations to enhance their security posture.

Affected Version(s)

Portal Generator addon to Priority ERP (developed by Soft Solutions) All versions without Priwall v3

References

CVSS V3.1

Score:
9.1
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

HackersEye
.