Unrated severityNVD Advisory· Published Jul 9, 2026· Updated Jul 10, 2026
CVE-2026-51923
CVE-2026-51923
Description
An Insecure Direct Object Reference (IDOR) vulnerability exists in docuForm GmbH Client v.11.11c allowing a remote attacker to execute arbitrary code via the user settings component, and modify or retrieve sensitive data associated with other users’ accounts.
Affected products
1- Range: 11.11c
Patches
Vulnerability mechanics
References
3- zerobreach.demitre
- docuform.demitre
- gist.github.com/ZeroBreach-GmbHmitre
News mentions
0No linked articles in our index yet.