CVE-2026-39250

An authorization vulnerability exists in Innoshop 0.6.0. After logging into the frontend, an attacker can directly access backend application interfaces, leading to further dangerous operations.
Configurations

No configuration.

History

24 Jul 2026, 09:10

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad de autorización existe en Innoshop 0.6.0. Después de iniciar sesión en el frontend, un atacante puede acceder directamente a las interfaces de la aplicación de backend, lo que lleva a operaciones peligrosas adicionales.

20 May 2026, 14:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.3
CWE CWE-284

19 May 2026, 21:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-19 21:16

Updated : 2026-07-24 09:10


NVD link : CVE-2026-39250

Mitre link : CVE-2026-39250

CVE.ORG link : CVE-2026-39250


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control