8.8
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Description
Insecure Permissions vulnerability in kvf-admin v1.0.0 allows a remote attacker to escalate privileges via the UserController.java component
AI Analysis
Insecure Permissions vulnerability allowing remote privilege escalation
Basic Information
ID
CVE-2026-38807
Source
mitre
Published
May 27, 2026 at 00:00
Modified
May 28, 2026 at 14:22
Affected Product
Vendor
n/a
Product
kvf-admin
Version
v1.0.0
Affected Versions
n/a n/a n/a
CWE Classification
AI Assessment
AI Score
8.8 / 10
AI Severity
High
Vendor
Unknown
Product
kvf-admin
Version
v1.0.0