Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-67403

Опубликовано: 09 сент. 2026
Источник: nvd
EPSS Низкий

Описание

Cash Collect contains an improper authorization vulnerability in the Sage AR Automation API. Insufficient tenant-level authorization checks allow authenticated users to access administrative resources belonging to other tenants by specifying a valid non predictable tenant identifier.

EPSS

Процентиль: 7%
0.0017
Низкий

Дефекты

CWE-639

Связанные уязвимости

github
10 дней назад

Cash Collect contains an improper authorization vulnerability in the Sage AR Automation API. Insufficient tenant-level authorization checks allow authenticated users to access administrative resources belonging to other tenants by specifying a valid non predictable tenant identifier.

EPSS

Процентиль: 7%
0.0017
Низкий

Дефекты

CWE-639