Loading market data...
← Back to CVE feed

CVE-2026-9192

CRITICAL CVSS 9.8 View on NVD ↗

Description

An authentication bypass vulnerability in the ODBC App Server of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an unauthenticated remote attacker to bypass password verification and execute queries with the privileges of any named user known to the server, including administrators.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Published: Aug 05, 2026 16:17 UTC Modified: Aug 05, 2026 19:17 UTC