<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Tue, 06 Oct 2026 11:12:06 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-308637</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-308637</link>
      <description>EUVD-2026-308637</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-308637</guid>
    </item>
    <item>
      <title>fkie_cve-2026-32699</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-32699</link>
      <description>&lt;p&gt;FacturaScripts is an open source accounting and invoicing software. In versions 2025.92 and earlier, the application fails to validate the nick parameter during a POST request to the EditUser controller. Although the user interface prevents editing this field, a user can bypass this restriction by intercepting the request and modifying the nick form-data parameter to rename any account, including the administrator account. This leads to unauthorized modification of a field intended to be immutable.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;FacturaScripts is an open source accounting and invoicing software. In versions 2025.92 and earlier, the application fails to validate the nick parameter during a POST request to the EditUser controller. Although the user interface prevents editing this field, a user can bypass this restriction by intercepting the request and modifying the nick form-data parameter to rename any account, including the administrator account. This leads to unauthorized modification of a field intended to be immutable.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-32699</guid>
    </item>
    <item>
      <title>GHSA-pp79-hqv6-vmc3 — FacturaScripts has Insecure Parameter Handling: Unauthorized Modification of Immutable 'nick' Field</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-pp79-hqv6-vmc3</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: facturascripts/facturascripts&lt;/p&gt;
&lt;p&gt;### Summary
The application fails to validate the ```nick``` parameter during a ```POST``` request to the ```EditUser``` controller. Although the UI prevents editing this field, a user can bypass this restriction using a proxy to rename any account (including the Administrator). This leads to Broken Access Control and potential Audit Log Corruption.&lt;/p&gt;
&lt;p&gt;### Details
The vulnerability exists in the user update logic. When a ```POST``` request is sent to ```/EditUser```, the backend processes the ```nick``` form-data parameter without checking if it matches the original value or if the user has the privilege to change a unique identifier that is intended to be immutable.&lt;/p&gt;
&lt;p&gt;### PoC
***1.*** Log in to the dashboard as any user  (e.g. admin user).&lt;/p&gt;
&lt;p&gt;***2.*** Go to your Profile  by clicking your username/avatar in the top right.&lt;/p&gt;
&lt;p&gt;***3.*** Open Burp Suite and ensure Intercept is ON.&lt;/p&gt;
&lt;p&gt;***5.*** Click the Save button in the UI.&lt;/p&gt;
&lt;p&gt;***6.*** In Burp Suite, locate  ```nick```  in the body:&lt;/p&gt;
&lt;p&gt;&amp;lt;img width=&amp;#34;1915&amp;#34; height=&amp;#34;1013&amp;#34; alt=&amp;#34;Screenshot_2026-03-04_05_26_32&amp;#34; src=&amp;#34;https://github.com/user-attachments/assets/aea4e6fd-beba-4a47-96da-8b9bd9075681&amp;#34; /&amp;gt;&lt;/p&gt;
&lt;p&gt;***7.*** Change the value admin to Vulnerable (or any other string).&lt;/p&gt;
&lt;p&gt;***8.*** Click Forward in Burp Suite.&lt;/p&gt;
&lt;p&gt;The application will log the user out. It is possible to now log back in using the username &amp;#34;Vulnerable&amp;#34; and the original password.&lt;/p&gt;
&lt;p&gt;### Impact
An attacker can effectively sabotage the system’s audit trail, performing malicious actions and then…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: facturascripts/facturascripts&lt;/p&gt;
&lt;p&gt;### Summary
The application fails to validate the ```nick``` parameter during a ```POST``` request to the ```EditUser``` controller. Although the UI prevents editing this field, a user can bypass this restriction using a proxy to rename any account (including the Administrator). This leads to Broken Access Control and potential Audit Log Corruption.&lt;/p&gt;
&lt;p&gt;### Details
The vulnerability exists in the user update logic. When a ```POST``` request is sent to ```/EditUser```, the backend processes the ```nick``` form-data parameter without checking if it matches the original value or if the user has the privilege to change a unique identifier that is intended to be immutable.&lt;/p&gt;
&lt;p&gt;### PoC
***1.*** Log in to the dashboard as any user  (e.g. admin user).&lt;/p&gt;
&lt;p&gt;***2.*** Go to your Profile  by clicking your username/avatar in the top right.&lt;/p&gt;
&lt;p&gt;***3.*** Open Burp Suite and ensure Intercept is ON.&lt;/p&gt;
&lt;p&gt;***5.*** Click the Save button in the UI.&lt;/p&gt;
&lt;p&gt;***6.*** In Burp Suite, locate  ```nick```  in the body:&lt;/p&gt;
&lt;p&gt;&amp;lt;img width=&amp;#34;1915&amp;#34; height=&amp;#34;1013&amp;#34; alt=&amp;#34;Screenshot_2026-03-04_05_26_32&amp;#34; src=&amp;#34;https://github.com/user-attachments/assets/aea4e6fd-beba-4a47-96da-8b9bd9075681&amp;#34; /&amp;gt;&lt;/p&gt;
&lt;p&gt;***7.*** Change the value admin to Vulnerable (or any other string).&lt;/p&gt;
&lt;p&gt;***8.*** Click Forward in Burp Suite.&lt;/p&gt;
&lt;p&gt;The application will log the user out. It is possible to now log back in using the username &amp;#34;Vulnerable&amp;#34; and the original password.&lt;/p&gt;
&lt;p&gt;### Impact
An attacker can effectively sabotage the system’s audit trail, performing malicious actions and then…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-pp79-hqv6-vmc3</guid>
    </item>
  </channel>
</rss>
