Ce mail provient de l'extérieur, restons vigilants

=====================================================================


                            CERT-Renater

                Note d'Information No. 2026/VULN819
_____________________________________________________________________

DATE                : 04/08/2026

HARDWARE PLATFORM(S): /

OPERATING SYSTEM(S): Systems running WAPT versions prior to 2.6.1.17813.
 
=====================================================================
https://www.wapt.fr/fr/doc/wapt-security-bulletin.html#wapt-2026-06-cve-2026-33591
_____________________________________________________________________

WAPT-2026-06 : CVE-2026-33591

    Brief: authentication bypass on WaptServer

    Announced: June 09, 2026

    Impact: High

    Products: WAPT Enterprise

    Impacted versions: Wapt Entreprise

        Wapt Entreprise / Discovery from 2.6.0.16767 up to
          2.6.1.17787

    Description: a vulnerability in Wapt Server before version
2.6.1.17813 allows a remote unauthenticated attacker to bypass
security restriction using a specially crafted packet and
retrive a valid session token for the targeted account

    Reporter: Brian CHERVY, System Engineer from Antiane,
Réunion Team, https://antiane.com

    Published CVE: publication pendin


=========================================================

+ CERT-RENATER        |    tel : 01-53-94-20-44         +
+ 23/25 Rue Daviel    |    fax : 01-53-94-20-41         +
+ 75013 Paris         |   email:cert@support.renater.fr +
=========================================================




