CVE-2026-4064 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Missing authorization checks on multiple gRPC service endpoints in PowerShell Universal before 2026.1.4 allows an authenticated user with any valid token to byp…
High CVSS: 8.3

CVE-2026-4064

Missing authorization checks on multiple gRPC service endpoints in PowerShell Universal before 2026.1.4 allows an authenticated user with any valid token to bypass role-based access controls and perform privileged operations — including reading sensitive data, creating or deleting resources, and disrupting service operations — via crafted gRPC requests.
Vendor
Ironmansoftware
Product
Powershell Universal
CWE
CWE-862
Yayın Tarihi
2026-03-17 20:16:14
Güncelleme
2026-03-19 13:03:28
Source Identifier
security@devolutions.net
KEV Date Added
-

Kategoriler

Referanslar