Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 04 Aug 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in Ehco1996 django-sspanel up to 2023.12.26. This affects the function TicketDetailView of the file apps/sspanel/views.py of the component Support Ticket Handler. Executing a manipulation can lead to authorization bypass. The attack can be executed remotely. The vendor was contacted early about this disclosure but did not respond in any way. This vulnerability only affects products that are no longer supported by the maintainer. | |
| Title | Ehco1996 django-sspanel Support Ticket views.py TicketDetailView authorization | |
| First Time appeared |
Ehco1996
Ehco1996 django-sspanel |
|
| Weaknesses | CWE-285 CWE-639 |
|
| CPEs | cpe:2.3:a:ehco1996:django-sspanel:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ehco1996
Ehco1996 django-sspanel |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-04T22:30:08.625Z
Reserved: 2026-08-04T13:04:01.126Z
Link: CVE-2026-18818
No data.
No data.
No data.
OpenCVE Enrichment
No data.