CVE-2026-4312

GCB/FCB Audit Software developed by DrangSoft has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to directly access certain APIs to create a new administrative account.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dragonsoft:gcb\/fcb_government_financial_cybersecurity_configuration_audit_software:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-03-17 08:15

Updated : 2026-06-17 10:56


NVD link : CVE-2026-4312

Mitre link : CVE-2026-4312

CVE.ORG link : CVE-2026-4312


JSON object : View

Products Affected

dragonsoft

  • gcb\/fcb_government_financial_cybersecurity_configuration_audit_software
CWE
CWE-306

Missing Authentication for Critical Function