Tracking
Sign in to view the affected projects.
No advisories yet.
Solution
Contact the vendor to obtain the patch.
Workaround
No workaround given by the vendor.
Tue, 24 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 24 Mar 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Galaxy Software Services Corporation
Galaxy Software Services Corporation vitals Esp |
|
| Vendors & Products |
Galaxy Software Services Corporation
Galaxy Software Services Corporation vitals Esp |
Tue, 24 Mar 2026 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vitals ESP developed by Galaxy Software Services has a Incorrect Authorization vulnerability, allowing authenticated remote attackers to perform certain administrative functions, thereby escalating privileges. | |
| Title | Galaxy Software Services|Vitals ESP - Incorrect Authorization | |
| Weaknesses | CWE-863 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2026-03-24T14:35:48.182Z
Reserved: 2026-03-23T10:47:13.571Z
Link: CVE-2026-4639
Updated: 2026-03-24T14:35:38.380Z
Status : Awaiting Analysis
Published: 2026-03-24T05:16:25.167
Modified: 2026-03-24T15:53:48.067
Link: CVE-2026-4639
No data.
OpenCVE Enrichment
Updated: 2026-03-25T20:40:09Z