A weakness has been identified in Ehco1996 django-sspanel up to 2023.12.26. This affects the function TicketDetailView of the file apps/sspanel/views.py of the component Support Ticket Handler. Executing a manipulation can lead to authorization bypass. The attack can be executed remotely. The vendor was contacted early about this disclosure but did not respond in any way. This vulnerability only affects products that are no longer supported by the maintainer.
Metrics
Affected Vendors & Products
References
History
Tue, 04 Aug 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in Ehco1996 django-sspanel up to 2023.12.26. This affects the function TicketDetailView of the file apps/sspanel/views.py of the component Support Ticket Handler. Executing a manipulation can lead to authorization bypass. The attack can be executed remotely. The vendor was contacted early about this disclosure but did not respond in any way. This vulnerability only affects products that are no longer supported by the maintainer. | |
| Title | Ehco1996 django-sspanel Support Ticket views.py TicketDetailView authorization | |
| First Time appeared |
Ehco1996
Ehco1996 django-sspanel |
|
| Weaknesses | CWE-285 CWE-639 |
|
| CPEs | cpe:2.3:a:ehco1996:django-sspanel:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ehco1996
Ehco1996 django-sspanel |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-08-04T22:30:08.625Z
Updated: 2026-08-04T22:30:08.625Z
Reserved: 2026-08-04T13:04:01.126Z
Link: CVE-2026-18818
No data.
No data.
No data.