CVE-2026-4562

A security flaw has been discovered in MacCMS 2025.1000.4052. This affects an unknown part of the file application/api/controller/Timming.php of the component Timming API Endpoint. The manipulation results in missing authentication. The attack may be performed from remote. The exploit has been released to the public and may be used for attacks.
Configurations

No configuration.

History

24 Apr 2026, 16:32

Type Values Removed Values Added
Summary
  • (es) Se ha descubierto una falla de seguridad en MacCMS 2025.1000.4052. Esto afecta una parte desconocida del archivo application/api/controller/Timming.php del componente Timming API Endpoint. La manipulación resulta en falta de autenticación. El ataque puede realizarse de forma remota. El exploit ha sido publicado y puede ser utilizado para ataques.

23 Mar 2026, 00:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-23 00:16

Updated : 2026-04-29 01:00


NVD link : CVE-2026-4562

Mitre link : CVE-2026-4562

CVE.ORG link : CVE-2026-4562


JSON object : View

Products Affected

No product.

CWE
CWE-287

Improper Authentication

CWE-306

Missing Authentication for Critical Function