CVE-2026-67687

Published: Ago 07, 2026 Last Modified: Ago 07, 2026
ExploitDB:
Other exploit source:
Google Dorks:

Description

AI Translation Available

Insecure Permissions vulnerability in ics-park v.2.0 allows a remote attacker to escalate privileges via the /system/role/save endpoint in RoleController.java and system/user/update endpoint in UserController.java

https://github.com/qflksheep/CVE-2026-67687-ICS-Park-Smart-Park-Management-Syst…
https://github.com/qflksheep/ICS-Park-Smart-Park-Management-System-v2.0-POC/blo…