CVE-2026-27776

IM-LogicDesigner module of intra-mart Accel Platform contains insecure deserialization issue. This can be exploited only when IM-LogicDesigner is deployed on the system. Arbitrary code may be executed when some crafted file is imported by a user with the administrative privilege.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:intra-mart:accel_platform:8.0.4:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.5:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.6:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.7:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.8:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.9:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.10:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.11:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.12:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.13:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.14:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.15:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.16:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.17:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.19:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.20:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.21:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.22:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.23:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.24:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.25:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.26:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.27:-:*:*:*:*:*:*

History

23 Mar 2026, 14:21

Type Values Removed Values Added
References () https://global.intra-mart.support/hc/en-us/articles/55266898383641 - () https://global.intra-mart.support/hc/en-us/articles/55266898383641 - Vendor Advisory
References () https://jvn.jp/en/jp/JVN80500630/ - () https://jvn.jp/en/jp/JVN80500630/ - Third Party Advisory
First Time Intra-mart accel Platform
Intra-mart
Summary
  • (es) El módulo IM-LogicDesigner de intra-mart Accel Platform contiene un problema de deserialización insegura. Esto puede ser explotado solo cuando IM-LogicDesigner está desplegado en el sistema. Se puede ejecutar código arbitrario cuando se importa algún archivo manipulado por un usuario con privilegios de administrador.
CVSS v2 : unknown
v3 : 7.2
v2 : unknown
v3 : 8.8
CPE cpe:2.3:a:intra-mart:accel_platform:8.0.13:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.19:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.6:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.7:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.4:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.25:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.23:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.5:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.22:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.27:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.9:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.21:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.17:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.16:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.14:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.24:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.11:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.12:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.10:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.8:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.20:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.15:-:*:*:*:*:*:*
cpe:2.3:a:intra-mart:accel_platform:8.0.26:-:*:*:*:*:*:*

27 Feb 2026, 08:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-27 08:17

Updated : 2026-03-23 14:21


NVD link : CVE-2026-27776

Mitre link : CVE-2026-27776

CVE.ORG link : CVE-2026-27776


JSON object : View

Products Affected

intra-mart

  • accel_platform
CWE
CWE-502

Deserialization of Untrusted Data