Metrics
Affected Vendors & Products
Mon, 31 Aug 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 31 Aug 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in dibo-software diboot 3.8.0. This affects an unknown part of the file /api/iam/tenant/resource of the component Tenant Resource Assignment Handler. Executing a manipulation of the argument tenantId can lead to improper access controls. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | dibo-software diboot Tenant Resource Assignment resource access control | |
| First Time appeared |
Dibo-software
Dibo-software diboot |
|
| Weaknesses | CWE-266 CWE-284 |
|
| CPEs | cpe:2.3:a:dibo-software:diboot:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Dibo-software
Dibo-software diboot |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-08-31T18:15:08.648Z
Updated: 2026-08-31T18:48:05.994Z
Reserved: 2026-08-31T05:33:15.998Z
Link: CVE-2026-82818
Updated: 2026-08-31T18:48:00.678Z
Status : Deferred
Published: 2026-08-31T19:17:22.940
Modified: 2026-08-31T20:56:08.800
Link: CVE-2026-82818
No data.