Filtered by vendor Dreryk Subscriptions
Filtered by product Dreryk Gabinet Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2026-17038 1 Dreryk 1 Dreryk Gabinet 2026-09-10 N/A
DrEryk Gabinet before 11.5.0 uses hard-coded API credentials in its ticket reporting component. These credentials can be used to authenticate directly to the ticket system API. This allows an attacker to perform privileged operations beyond what is offered by the application, including reading and modifying tickets.