CVE-2026-26416
Awaiting Analysis
Awaiting Analysis - Queue
Authorization Bypass in TCS Cognix Recon Client Enables Privilege Escalation
Publication date: 2026-03-05
Last updated on: 2026-03-10
Assigner: MITRE
Description
Description
An authorization bypass vulnerability in Tata Consultancy Services Cognix Recon Client v3.0 allows authenticated users to escalate privileges across role boundaries via crafted requests.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| tcs | cognix_platform | 3.0 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-269 | The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor. |