NewSiteServer (NSS) developed by CyberTutor has a Missing Authentication vulnerability. Unauthenticated remote attackers can exploit a specific functionality to send emails to anyone on behalf of the school.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
Contact the vendor to take remedial measures.
Workaround
No workaround given by the vendor.
References
History
Mon, 24 Aug 2026 04:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | NewSiteServer (NSS) developed by CyberTutor has a Missing Authentication vulnerability. Unauthenticated remote attackers can exploit a specific functionality to send emails to anyone on behalf of the school. | |
| Title | CyberTutor|NewSiteServer (NSS) - Missing Authentication | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2026-08-24T03:30:35.116Z
Reserved: 2026-08-14T09:35:37.124Z
Link: CVE-2026-19853
No data.
Status : Received
Published: 2026-08-24T04:16:57.710
Modified: 2026-08-24T04:16:57.710
Link: CVE-2026-19853
No data.
OpenCVE Enrichment
Updated: 2026-08-24T05:30:12Z
Weaknesses