PT-2026-20711 · Nootheme · Nootheme Citilights

·

CVE-2026-25367

·

Publicado

2026-02-19

·

Atualizado

2026-02-19

CVSS v3.1

5.3

Média

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions NooTheme CitiLights versions prior to 3.7.2
Description An authorization issue exists in NooTheme CitiLights due to incorrectly configured access control security levels. This allows for potential exploitation of the system.
Recommendations Update NooTheme CitiLights to version 3.7.2 or later.

Correção

Missing Authorization

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-25367

Produtos afetados

Nootheme Citilights