Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 01 Jun 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 01 Jun 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in Bottelet DaybydayCRM up to 2.2.1. This impacts the function view of the file app/Http/Controllers/DocumentsController.php. Such manipulation leads to improper authorization. The attack may be launched remotely. It is best practice to apply a patch to resolve this issue. | |
| Title | Bottelet DaybydayCRM DocumentsController.php view improper authorization | |
| First Time appeared |
Bottelet
Bottelet daybydaycrm |
|
| Weaknesses | CWE-266 CWE-285 |
|
| CPEs | cpe:2.3:a:bottelet:daybydaycrm:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Bottelet
Bottelet daybydaycrm |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-06-01T19:36:10.308Z
Reserved: 2026-05-31T16:25:56.939Z
Link: CVE-2026-10282
Updated: 2026-06-01T19:36:04.495Z
Status : Deferred
Published: 2026-06-01T19:16:21.370
Modified: 2026-06-02T13:03:31.153
Link: CVE-2026-10282
No data.
OpenCVE Enrichment
Updated: 2026-06-02T20:52:53Z