PT-2026-23477 · Tata Consultancy Services · Cognix Recon Client
Aksalsalimi
·
Publicado
2026-03-05
·
Atualizado
2026-03-08
·
CVE-2026-26417
CVSS v3.1
8.1
Alta
| Vetor | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Tata Consultancy Services Cognix Recon Client version 3.0
Description
A broken access control issue exists in the password reset functionality. Authenticated users can reset passwords for any user account by sending specially crafted requests.
Recommendations
Apply updates to address the access control flaw in the password reset functionality.
Exploit
Correção
Improper Access Control
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Cognix Recon Client