8.8
CVE-2026-5141
- EPSS 0.23%
- Veröffentlicht 29.04.2026 14:18:00
- Zuletzt bearbeitet 06.06.2026 08:16:53
- Quelle iletisim@usom.gov.tr
- CVE-Watchlists
- Unerledigt
Improper Access Control in TUBITAK BILGEM's Pardus Software Center
Improper Privilege Management, Improper Access Control, Incorrect privilege assignment vulnerability in TUBITAK BILGEM Software Technologies Research Institute Pardus Software Center allows Hijacking a privileged process. This issue affects Pardus Software Center: from 1.0.2 before 1.0.3.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerTUBITAK BILGEM Software Technologies Research Institute
≫
Produkt
Pardus Software Center
Default Statusunaffected
Version
1.0.2
Version <
1.0.3
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.23% | 0.133 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| iletisim@usom.gov.tr | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
CWE-266 Incorrect Privilege Assignment
A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.
CWE-269 Improper Privilege Management
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
CWE-284 Improper Access Control
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
https://www.usom.gov.tr/bildirim/tr-26-0131
https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0131