CVE-2026-4045

A flaw has been found in projectsend up to r1945. This impacts an unknown function of the file includes/Classes/Auth.php. Executing a manipulation of the argument ldap_email can lead to observable response discrepancy. The attack can be executed remotely. A high complexity level is associated with this attack. The exploitability is said to be difficult. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Configurations

No configuration.

History

12 Mar 2026, 17:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-12 17:16

Updated : 2026-03-12 21:07


NVD link : CVE-2026-4045

Mitre link : CVE-2026-4045

CVE.ORG link : CVE-2026-4045


JSON object : View

Products Affected

No product.

CWE
CWE-203

Observable Discrepancy

CWE-204

Observable Response Discrepancy