uniFLOW Universal Login Manager (ULM) Standalone
contains an information disclosure vulnerability that may allow an
authenticated administrator to access sensitive configuration information
through the ULM Remote User Interface (RUI). Exploitation requires
administrative privileges and may disclose configuration data associated with
SMTP or LDAP integrations. ULM deployments connected to uniFLOW Server or
uniFLOW Online are not affected.
CVSS
No CVSS.
References
Configurations
No configuration.
History
06 Jul 2026, 09:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-07-06 09:16
Updated : 2026-07-06 19:17
NVD link : CVE-2026-1433
Mitre link : CVE-2026-1433
CVE.ORG link : CVE-2026-1433
JSON object : View
Products Affected
No product.
CWE
CWE-522
Insufficiently Protected Credentials
