SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-7187

HIGH · CVSS 8.8 EPSS 0.21%

Source: NVD + CISA KEV + EPSS · Published 2026-07-28 · Last synced 2026-08-27

CyberRota Analysis

AI-Generated

A critical vulnerability in Universal Software Inc.'s UKBS allows unauthorized access to sensitive functionalities due to missing authentication mechanisms, which are not properly constrained by Access Control Lists (ACLs). This high-severity issue poses a significant risk of exploitation, potentially leading to unauthorized data access or manipulation. Organizations using this unsupported product should prioritize immediate risk mitigation measures, as they remain vulnerable until a patch or alternative solution is implemented.

CVE
CVE-2026-7187
Severity
HIGH
CVSS
8.8
EPSS
0.21%

Original NVD Description

Missing authentication for critical function vulnerability in Universal Software Inc. UKBS allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects UKBS: through 28072026. NOTE: The vendor was contacted and it was learned that the product is not supported.