Metrics
Affected Vendors & Products
Fri, 03 Apr 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Newgensoft
Newgensoft omnidocs |
|
| Vendors & Products |
Newgensoft
Newgensoft omnidocs |
Thu, 02 Apr 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security flaw has been discovered in Newgen OmniDocs up to 12.0.00. Affected by this issue is some unknown functionality of the file /omnidocs/WebApiRequestRedirection. The manipulation of the argument DocumentId results in improper control of resource identifiers. The attack may be performed from remote. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Newgen OmniDocs WebApiRequestRedirection resource injection | |
| Weaknesses | CWE-99 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-04-02T18:41:43.908Z
Reserved: 2026-04-02T08:02:15.811Z
Link: CVE-2026-5414
Updated: 2026-04-02T18:41:38.682Z
Status : Received
Published: 2026-04-02T18:16:35.777
Modified: 2026-04-02T18:16:35.777
Link: CVE-2026-5414
No data.
OpenCVE Enrichment
Updated: 2026-04-03T09:17:06Z