๐Ÿ” CVE Alert

CVE-2026-4320

UNKNOWN 0.0

Authorization Bypass in ICMS Content Management by Creartia Internet Consulting

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Authorization Bypass vulnerability in Creartia's ICMS software could allow an attacker to gain unauthorized access to protected features by manipulating the HTTP redirect headers of the login process, causing the script to continue running and enabling privilege escalation without the need for credentials.

CWE CWE-288
Vendor creartia internet consulting
Product icms content management
Published May 18, 2026
Last Updated May 18, 2026
Stay Ahead of the Next One

Get instant alerts for creartia internet consulting icms content management

Be the first to know when new unknown vulnerabilities affecting creartia internet consulting icms content management are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Creartia Internet Consulting / ICMS Content Management
0 < *

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
incibe.es: https://www.incibe.es/en/incibe-cert/notices/aviso/authorization-bypass-icms-content-management-creartia-internet-consulting

Credits

Pirolita