HIGHVulnerability

CVE-2026-9853

A vulnerability exists in SYS600 which allows any user authenticated to the operating system of the server hosting the application to read and modify application objects without being authenticated to the SYS600 system itself. Only the SYS600 system users should be permitted to view and modify application objects.

Properties

severity
HIGH
score
7.8
epss_score
0.00125
cve_id
CVE-2026-9853
signal_observed_at
2026-09-15T21:12:51+00:00
vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
published_at
2026-09-03T13:06:25.943
last_modified
2026-09-09T19:36:31.563
epss_percentile
0.02559

Related Entities (4)

ENRICHED_BY (1)

[Source]FIRST EPSS

AFFECTS_PRODUCT (1)

[Product]

HAS_WEAKNESS (1)

[Weakness]Incorrect Implementation of Authentication Algorithm

DESCRIBED_BY (1)

[Source]NVD

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-9853 — Ninja Signal Threat Intelligence | Ninja Signal