Direct naar de inhoud
⚡ Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 2 min 107 bronnen 1 kritiek 15 vandaag
CVE's Videos Dagbriefing

← Terug naar CVE-database

CVE-2026-102489

CRITICAL · 9.8 CVSS Gepubliceerd: CWE-384

Beschrijving

Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability that leads to remote code execution as the zammad user. The vulnerability is also present in version 7.0.0 to version 7.1.3, but not exploitable due to environment conditions.

Vendors

Zammad Docker Linux

Affected products

Zammad Docker Linux Kernel

References