Description
An Insecure Direct Object Reference (IDOR) vulnerability exists in docuForm GmbH Client v.11.11c allowing a remote attacker to execute arbitrary code via the user settings component, and modify or retrieve sensitive data associated with other users’ accounts.
Published: 2026-07-09
Score: 8.1 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

An insecure direct object reference (IDOR) flaw exists in the user settings component of DocuForm GmbH Client version 11.11c. Based on the description, it is inferred that an attacker would need to access the client’s UI or API to read, modify, or execute code in the context of other users’ accounts, which would compromise confidentiality, integrity, and availability for those accounts.

Affected Systems

DocuForm GmbH Client, version 11.11c.

Risk and Exploitability

The EPSS score is < 1%, indicating a low exploitation probability, though it is not listed in the CISA KEV catalog. The CVSS score of 8 high severity issue. The flaw can be exercised remotely through the user settings component, and it is inferred that a remote attacker could exploit this vulnerability via the client interface or internal API if they obtain authenticated access, but the CVE description does not explicitly identify a specific web interface or API endpoint. Given the absence of a public exploit or mitigated version, the risk remains significant until a patched version is deployed.

Generated by OpenCVE AI on July 28, 2026 at 08:59 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade to the latest DocuForm Client release that fixes the IDOR vulnerability.
  • Disable the remote user settings endpoint to prevent unauthorized access until a patch is available.
  • Review and enforce strict access controls on the user settings operations, ensuring only the owning authenticated user can view or modify settings (aligning with mitigation for CWE‑639).

Generated by OpenCVE AI on July 28, 2026 at 08:59 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 28 Jul 2026 09:30:00 +0000

Type Values Removed Values Added
Title IDOR in DocuForm Client Enables Remote Code Execution

Thu, 23 Jul 2026 11:00:00 +0000

Type Values Removed Values Added
Title IDOR in DocuForm Client Enables Remote Code Execution

Tue, 21 Jul 2026 02:00:00 +0000

Type Values Removed Values Added
Title IDOR in DocuForm Client Enables Remote Code Execution

Wed, 15 Jul 2026 14:15:00 +0000

Type Values Removed Values Added
Title IDOR in DocuForm Client Enables Remote Code Execution

Tue, 14 Jul 2026 05:00:00 +0000

Type Values Removed Values Added
Title IDOR Enables Remote Code Execution in DocuForm Client

Mon, 13 Jul 2026 08:15:00 +0000

Type Values Removed Values Added
Title IDOR Enables Remote Code Execution in DocuForm Client

Sun, 12 Jul 2026 07:45:00 +0000

Type Values Removed Values Added
Title Insecure Direct Object Reference Allows Remote Code Execution and Data Access in DocuForm Client

Fri, 10 Jul 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 10 Jul 2026 14:30:00 +0000

Type Values Removed Values Added
Title Insecure Direct Object Reference Allows Remote Code Execution and Data Access in DocuForm Client
Weaknesses CWE-639

Fri, 10 Jul 2026 10:15:00 +0000

Type Values Removed Values Added
First Time appeared Docuform
Docuform client
Vendors & Products Docuform
Docuform client

Thu, 09 Jul 2026 21:15:00 +0000

Type Values Removed Values Added
Description An Insecure Direct Object Reference (IDOR) vulnerability exists in docuForm GmbH Client v.11.11c allowing a remote attacker to execute arbitrary code via the user settings component, and modify or retrieve sensitive data associated with other users’ accounts.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-07-10T15:32:15.156Z

Reserved: 2026-06-08T00:00:00.000Z

Link: CVE-2026-51923

cve-icon Vulnrichment

Updated: 2026-07-10T15:31:52.443Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-28T09:00:06Z

Weaknesses
  • CWE-639

    Authorization Bypass Through User-Controlled Key