PT-2026-28068 · Hypr · Hypr Server
CVE-2026-2414
·
Publicado
2026-03-25
·
Atualizado
2026-03-25
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
HYPR Server versions 9.5.2 through 10.7.1
Description
A flaw exists in HYPR Server that allows for authorization bypass through a user-controlled key, potentially leading to privilege escalation. The issue affects the server component.
Recommendations
Update HYPR Server to version 10.7.2 or later.
Correção
LPE
IDOR
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Hypr Server