AUGUST 21, 2026
Live Feed
Back to database
Case File

CVE-2026-7380

MEDIUM · CVSS 6.1 EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-07-07 · Last synced 2026-08-06

CyberRota Analysis

AI-Generated

The Access Control System (GKS) by Armiya Information Technologies is vulnerable to a basic cross-site scripting (XSS) attack due to improper handling of script-related HTML tags, which can lead to unauthorized execution of scripts targeting HTML attributes. This vulnerability poses a medium severity risk, potentially allowing attackers to manipulate web content and compromise user data. Organizations using versions prior to 2 of this system should prioritize remediation to mitigate the risk of exploitation.

CVE
CVE-2026-7380
Severity
MEDIUM
CVSS
6.1
EPSS
0.15%

Original NVD Description

Improper neutralization of Script-Related HTML tags in a web page (basic XSS) vulnerability in Armiya Information Technologies Ltd. Co. Access Control System (GKS) allows XSS Targeting HTML Attributes. This issue affects Access Control System (GKS): before Version 2.