cvedb.io
CVE-2026-26417
HIGH · CVSS 8.1
EPSS exploitation probability: 0%
Published 2026-03-05T19:16:04.680 · Last modified 2026-06-17T10:26:10.743

Summary

A broken access control vulnerability in the password reset functionality of Tata Consultancy Services Cognix Recon Client v3.0 allows authenticated users to reset passwords of arbitrary user accounts via crafted requests.

Affected products

tcs — cognix_platform

Does this affect you?

Add your gear to cvedb and we'll alert you only when tcs ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.