CVE-2026-32989 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Precurio Intranet Portal 4.4 contains a cross-site request forgery vulnerability that allows attackers to induce authenticated users to submit crafted requests…
High CVSS: 8.6

CVE-2026-32989

Precurio Intranet Portal 4.4 contains a cross-site request forgery vulnerability that allows attackers to induce authenticated users to submit crafted requests to a profile update endpoint handling file uploads. Attackers can exploit this to upload executable files to web-accessible locations, leading to arbitrary code execution in the context of the web server.
Vendor
-
Product
-
CWE
CWE-352
Yayın Tarihi
2026-03-20 16:16:17
Güncelleme
2026-04-01 15:23:23
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-

Kategoriler

Referanslar