High severity8.8NVD Advisory· Published Aug 6, 2026· Updated Aug 31, 2026
CVE-2026-67687
CVE-2026-67687
Description
Insecure Permissions vulnerability in ics-park v.2.0 allows a remote attacker to escalate privileges via the /system/role/save endpoint in RoleController.java and system/user/update endpoint in UserController.java
Affected products
3(expand)+ 1 more
- (no CPE)
- (no CPE)range: =2.0
- Range: =2.0
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.