vulnhighUnderground · Vulnerability
KEV agrega CVE-2026-102489 — Zammad GmbH / Zammad
OccurredOct 2, 2026 · 00:00 UTC
DetectedOct 3, 2026 · 02:14 UTC
SourceUnderground · Vulnerability
External ref.CVE-2026-102489
Zammad GmbH Zammad contains a session fixation vulnerability that can lead to remote code execution as the zammad user. This vulnerability can be chained with CVE-2026-102490.
- cve_id
- CVE-2026-102489
- vendor_product
- Zammad GmbH / Zammad