Sceawere

Vulnerability Detail

CVE-2026-65541UPDATED Verified Sceawere Triage Sources: NVD / CISA KEV

Unauthenticated Broken Access Control in Staff Training

Vulnerability Metadata

Severity
High
Score / CVSS
7.3
Creation Date
1d ago
Vendor
solutioned
Product
Staff Training
Attack Type
CWE-862 Missing Authorization
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Attack Complexity
LOW

Narrative and Response

Description

Unauthenticated Broken Access Control in Staff Training <= 1.0.7 versions.

Executive Summary

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Executive Summary Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Technical Details

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Detailed Technical Analysis Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Mitigations

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Remediation & Mitigations Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

References

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Intelligence References Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Additional Metadata

{
  "score": "7.3",
  "pubDate": "2026-08-06T15:17:15.857Z",
  "pubdate": "2026-08-06T15:17:15.857Z",
  "executiveSummary": "An unauthenticated broken access control vulnerability has been identified in the Staff Training product affecting versions 1.0.7 and below.\nThis security flaw introduces severe risk implications by allowing unauthenticated remote threat actors to bypass authorization mechanisms and interact with restricted backend functionality and sensitive resources intended solely for privileged administrative personnel.\nThe vulnerability stems from improper restriction of excessive privileges and the absence of robust access control checks within the application routing and request handling architecture.\nExploitation requires network connectivity to the targeted instance and does not necessitate prior authentication, valid session tokens, or specialized user interaction.\nSuccessful exploitation of this flaw can lead to unauthorized data exposure, potential modification of training records, or execution of privileged administrative operations depending on the exposed component's capabilities.\nOrganizations deploying vulnerable instances face significant exposure to unauthorized data manipulation and compromise of application integrity until remediation is applied.",
  "technicalDetails": "The vulnerability resides in the access control enforcement logic of the Staff Training product for versions 1.0.7 and below.\nThe root cause of the issue is the failure of the application to properly validate the authentication status and authorization privileges of incoming HTTP requests before executing sensitive backend functions or rendering restricted endpoints.\nBecause the component lacks adequate session validation or role-based access control checks, external attackers can directly invoke protected controller methods or access hidden application routes over the network without supplying valid credentials.\nThe attack flow typically proceeds as follows: an unauthenticated attacker identifies a restricted functional endpoint or administrative action within the Staff Training application.\nThe attacker crafts a direct HTTP request targeting this sensitive endpoint, bypassing standard user interface workflows that would normally enforce authorization constraints.\nUpon receiving the request, the vulnerable component processes the input and executes the underlying functionality without verifying whether the session possesses the requisite administrative privileges.\nThis behavior permits unauthorized interaction, enabling malicious actors to harvest restricted information, alter application configurations, or manipulate training data depending on the specific exposed function.\nThe affected versions encompass all releases of Staff Training up to and including 1.0.7, operating over standard network protocols.\nNo pre-existing user accounts or authentication requirements are necessary to trigger this condition, significantly lowering the barrier to exploitation."
}
CVE-2026-65541: Unauthenticated Broken Access Control in Staff Training (HIGH Severity, CVSS: 7.3) - Sceawere