Access Control Misconfiguration in DetaWix Mobile Web Portal by Parla Auto Automotive
CVE-2026-86450

7.5HIGH

What is CVE-2026-86450?

The DetaWix Mobile Web Portal from Parla Auto Automotive is susceptible to a vulnerability that permits the insertion of sensitive information into sent data. This issue stems from inadequate access controls that fail to properly constrain functionality, potentially allowing unauthorized access to critical data before version 1.0.19. Organizations using affected versions should take immediate action to mitigate risks associated with this vulnerability.

Affected Version(s)

DetaWix Mobile Web Portal 0

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Anonim
.