This issue affects UlakPDF: through 09092026.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 25 Sep 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tübi̇tak Ulakbi̇m
Tübi̇tak Ulakbi̇m ulakpdf |
|
| Vendors & Products |
Tübi̇tak Ulakbi̇m
Tübi̇tak Ulakbi̇m ulakpdf |
Thu, 24 Sep 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 24 Sep 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Incorrect Authorization vulnerability in TÜBİTAK ULAKBİM UlakPDF allows Privilege Escalation. This issue affects UlakPDF: through 09092026. | |
| Title | Admin Access Bypass via Header Fallback in TÜBİTAK ULAKBİM's UlakPDF | |
| Weaknesses | CWE-863 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: TR-CERT
Published:
Updated: 2026-09-24T14:42:00.710Z
Reserved: 2026-09-10T13:07:47.700Z
Link: CVE-2026-88916
Updated: 2026-09-24T14:41:56.360Z
Status : Deferred
Published: 2026-09-24T13:17:16.060
Modified: 2026-09-24T19:36:51.280
Link: CVE-2026-88916
No data.
OpenCVE Enrichment
Updated: 2026-09-25T14:17:45Z
-
CWE-863
Incorrect Authorization