CVE-2026-26289 - CERT CVE
ID CVE-2026-26289
Sažetak PowerSYSTEM Center REST API endpoint for device account export allows an authenticated user with limited permissions to expose sensitive information normally restricted to administrative permissions only.
Reference
CVSS
Base: 8.2
Impact: 5.3
Exploitability:2.3
Pristup
VektorSloženostAutentikacija
ADJACENT_NETWORK LOW LOW
Impact
PovjerljivostCjelovitostDostupnost
HIGH LOW LOW
CVSS vektor CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:L
Zadnje važnije ažuriranje 13-05-2026 - 15:52
Objavljeno 12-05-2026 - 22:16