HarborGuard / CVE
Back to search
HIGHCVE-2026-22230Published Modified CNA cisa-cg

CVE-2026-22230: OPEXUS eCASE Audit incorrect access control

OPEXUS eCASE Audit allows an authenticated attacker to modify client-side JavaScript or craft HTTP requests to access functions or buttons that have been disabled or blocked by an administrator. Fixed in eCASE Platform 11.14.1.0.

Metrics

CVSS v4.0
7.2
Severity
HIGH
Fixed in
11.14.1.0
Affected Products
1

Fix available

11.14.1.0
Affected packages
  • OPEXUS / eCASE Audit
    < 11.14.1.0 (from 11.4.0)
    Fixed in 11.14.1.0
CVSS Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:L/VA:L/SC:N/SI:N/SA:N
References