PT-2026-46130 · Itpison · Omicard Edm

Published

2026-06-04

·

Updated

2026-06-04

·

CVE-2026-10597

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
OMICARD EDM developed by ITPison has a Insecure Direct Object Reference vulnerability, allowing unauthenticated remote attackers to modify a specific parameter to obtain user's email address.

Fix

IDOR

Weakness Enumeration

Related Identifiers

CVE-2026-10597

Affected Products

Omicard Edm