AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2007-2760

HIGH · CVSS 9 EPSS 1.73%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-05-18 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2007-2760
Severity
HIGH
CVSS
9
EPSS
1.73%
Java

Original NVD Description

The canUpdate function in model/MRole.java in Adempiere before 3.1.6 does not properly validate user roles, which allows remote authenticated read-only users to gain read-write privileges. NOTE: some of these details are obtained from third party information.