CVE-2026-7198
EUVD-2026-3391902.06.2026, 14:17
CWE-284: Improper Access Control in web services in Progress Sitefinity 15.4.8623 before 15.4.8630 allows a remote unauthenticated attacker to access content that should be restricted, resulting in full compromise of confidentiality, integrity, and availability of affected installations.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| progress | sitefinity | 15.4.8623 ≤ 𝑥 < 15.4.8630 | CNA |
Common Weakness Enumeration