No analysis available yet.
No remediation available yet.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 13 Sep 2026 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in lenve vhr 1.0-SNAPSHOT. This issue affects the function HrInfoController.updateHr of the file HrMapper.xml. Such manipulation of the argument Password leads to improper privilege management. The attack may be performed from remote. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | lenve vhr HrMapper.xml HrInfoController.updateHr privileges management | |
| First Time appeared |
Lenve
Lenve vhr |
|
| Weaknesses | CWE-266 CWE-269 |
|
| CPEs | cpe:2.3:a:lenve:vhr:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Lenve
Lenve vhr |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-09-13T08:00:10.471Z
Reserved: 2026-09-12T08:24:13.076Z
Link: CVE-2026-90501
No data.
Status : Received
Published: 2026-09-13T08:16:27.017
Modified: 2026-09-13T08:16:27.017
Link: CVE-2026-90501
No data.
OpenCVE Enrichment
No data.