🔐 CVE Alert

CVE-2026-19043

MEDIUM 4.3

Authorization Bypass Critical POS Management Functions in Menulux Software's Menulux Portal

CVSS Score
4.3
EPSS Score
0.0%
EPSS Percentile
0th

Missing Authorization vulnerability in Menulux Software Inc. Menulux Portal allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Menulux Portal: before 20260903211448.

CWE CWE-862
Vendor menulux software inc.
Product menulux portal
Published Sep 4, 2026
Last Updated Sep 4, 2026
Stay Ahead of the Next One

Get instant alerts for menulux software inc. menulux portal

Be the first to know when new medium vulnerabilities affecting menulux software inc. menulux portal are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
None
Availability
None

Affected Versions

Menulux Software Inc. / Menulux Portal
0 < 20260903211448

References

NVD ↗ CVE.org ↗ EPSS Data ↗
siberguvenlik.gov.tr: https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0989

Credits

Şahnur Eren ALOĞLU