Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 22 Jun 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 20 Jun 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Privilege Escalation via Broken Access Control in Liquidfiles | |
| First Time appeared |
Liquidfiles
Liquidfiles liquidfiles |
|
| Vendors & Products |
Liquidfiles
Liquidfiles liquidfiles |
Sat, 20 Jun 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Liquidfiles versions before 4.2.12 are affected by a broken access control vulnerability resulting in privilege escalation from an Admin in a secondary domain to a Sysadmin by modifying a group in their managed secondary (non-default) group. | |
| Weaknesses | CWE-285 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: PRJBLK
Published:
Updated: 2026-06-22T17:29:20.335Z
Reserved: 2026-06-19T01:42:39.740Z
Link: CVE-2026-12673
Updated: 2026-06-22T17:29:16.309Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-20T15:15:07Z