AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-9192

CRITICAL · CVSS 9.8 EPSS 0.47%

Source: NVD + CISA KEV + EPSS · Published 2026-08-05 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

An authentication bypass vulnerability in the ODBC App Server of Progress MarkLogic Server allows unauthenticated remote attackers to circumvent password verification, enabling them to execute queries with the privileges of any user, including administrators. This critical flaw poses a significant risk to data integrity and confidentiality, making it imperative for organizations using affected versions prior to 11.3.6 and 12.0.3 to prioritize immediate patching and remediation efforts.

CVE
CVE-2026-9192
Severity
CRITICAL
CVSS
9.8
EPSS
0.47%

Original NVD Description

An authentication bypass vulnerability in the ODBC App Server of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an unauthenticated remote attacker to bypass password verification and execute queries with the privileges of any named user known to the server, including administrators.