horizontal privilege escalation. The vulnerability only impacts specific
configurations.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://docs.pointsharp.com/psa/advisories/psa-2026-001.html |
|
Mon, 16 Mar 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Pointsharp
Pointsharp id Server |
|
| Vendors & Products |
Pointsharp
Pointsharp id Server |
Fri, 13 Mar 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 13 Mar 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A broken access control may allow an authenticated user to perform a horizontal privilege escalation. The vulnerability only impacts specific configurations. | |
| Title | Broken access control vulnerability affecting ID Server | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: ENISA
Published:
Updated: 2026-03-16T11:27:05.956Z
Reserved: 2026-03-11T17:52:20.020Z
Link: CVE-2026-3999
Updated: 2026-03-13T16:04:54.947Z
Status : Awaiting Analysis
Published: 2026-03-13T19:55:13.130
Modified: 2026-03-16T14:53:46.157
Link: CVE-2026-3999
No data.
OpenCVE Enrichment
Updated: 2026-03-23T09:59:37Z