πŸ” CVE Alert

CVE-2026-86778

MEDIUM 5.3

Username Enumeration in Maksisoft Technology's Maksisoft Gym

CVSS Score
5.3
EPSS Score
0.0%
EPSS Percentile
0th

Observable response discrepancy vulnerability in Maksisoft Technology, IT, and Software Industry and Trade Inc. Maksisoft Gym allows Account Footprinting. This issue affects Maksisoft Gym: from 0.5.10 before 0.5.11.

CWE CWE-204
Vendor maksisoft technology, it, and software industry and trade inc.
Product maksisoft gym
Published Sep 30, 2026
Last Updated Sep 30, 2026
Stay Ahead of the Next One

Get instant alerts for maksisoft technology, it, and software industry and trade inc. maksisoft gym

Be the first to know when new medium vulnerabilities affecting maksisoft technology, it, and software industry and trade inc. maksisoft gym are published β€” delivered to Slack, Telegram or Discord.

Get Free Alerts β†’ Free Β· No credit card Β· 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
None
Availability
None

Affected Versions

Maksisoft Technology, IT, and Software Industry and Trade Inc. / Maksisoft Gym
0.5.10 < 0.5.11

References

NVD β†— CVE.org β†— EPSS Data β†—
siberguvenlik.gov.tr: https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-1223

Credits

Γ–zcan Ersan