Home

Description

Missing Authentication for Critical Function vulnerability in TUBITAK BILGEM Software Technologies Research Institute Liderahenk allows Remote Code Inclusion, Privilege Abuse, Command Injection.This issue affects Liderahenk: before v3.4.0.

PUBLISHED Reserved 2026-02-11 | Published 2026-03-10 | Updated 2026-03-10 | Assigner TR-CERT




HIGH: 7.5CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H

Problem types

CWE-306 Missing Authentication for Critical Function

Product status

Default status
unaffected

Any version before v3.4.0
affected

Credits

Edip ALHAZOURİ finder

References

www.usom.gov.tr/bildirim/tr-26-0087 third-party-advisory

cve.org (CVE-2026-2339)

nvd.nist.gov (CVE-2026-2339)

Download JSON