SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-12693

CRITICAL · CVSS 9.4 EPSS 0.26%

Source: NVD + CISA KEV + EPSS · Published 2026-07-17 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

The vulnerability in Vimesoft Inc. Enterprise Video Platform allows unauthorized access to functionalities due to an authorization bypass through user-controlled keys, impacting versions from 3.11.0.0 to before 3.25.0. This critical flaw, rated 9.4 on the CVSS scale, poses significant risks of data exposure and unauthorized actions, making it essential for organizations using affected versions to prioritize immediate remediation.

CVE
CVE-2026-12693
Severity
CRITICAL
CVSS
9.4
EPSS
0.26%

Original NVD Description

Authorization bypass through User-Controlled key vulnerability in Vimesoft Inc. Enterprise Video Platform allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Enterprise Video Platform: from 3.11.0.0 before 3.25.0.