CVE-2026-92625
7.5 HIGHPublished 2026-09-16 · Updated 2026-09-18
AI analysis for this CVE has not been generated yet. Raw NVD data is shown below.
NVD description
Control iD iDSecure versions prior to 4.8.3.0 are affected by an unauthenticated Denial of Service. The /api/license/restartService endpoint is reachable without authentication and invokes an internal routine that terminates the iDSecure service process and relaunches it by way of a generated batch script. An unauthenticated remote attacker can call this endpoint repeatedly to hold the service in a continuous restart cycle, rendering it unavailable.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Weaknesses
CWE-306
All references
Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.
Related CVEs
- HIGHCVE-2026-18810PoC
- HIGHCVE-2026-24079
- HIGHCVE-2026-25703PoC
- UNSCOREDCVE-2026-40856
- UNSCOREDCVE-2026-58071
- HIGHCVE-2026-60009PoC
- CRITICALCVE-2026-61514
- HIGHCVE-2026-61590PoC
Related by shared AI tags and CWE weakness class. Browse the full archive.