CVE-2026-26418
HIGHTCS Cognix Recon Client 3.0 - Auth Bypass
Title source: llmDescription
Missing authentication and authorization in the web API of Tata Consultancy Services Cognix Recon Client v3.0 allows remote attackers to access application functionality without restriction via the network.
Exploits (1)
github
WRITEUP
10 stars
by XiaomingX · pythonpoc
https://github.com/XiaomingX/data-cve-poc-py-v1/tree/main/2026/CVE-2026-26418
References (3)
Scores
CVSS v3
7.5
EPSS
0.0006
EPSS Percentile
18.2%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Classification
CWE
CWE-284
Status
draft
Timeline
Published
Mar 05, 2026
Tracked Since
Mar 06, 2026