CVE-2026-2174

HIGH

Fabian Contact Management System - Authentication Bypass

Title source: rule
STIX 2.1

Description

A security flaw has been discovered in code-projects Contact Management System 1.0. This affects an unknown part of the component CRUD Endpoint. The manipulation of the argument ID results in improper authentication. The attack may be launched remotely.

Scores

CVSS v3 7.3
EPSS 0.0004
EPSS Percentile 11.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-287
Status published
Products (1)
fabian/contact_management_system 1.0
Published Feb 08, 2026
Tracked Since Feb 18, 2026