Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Contact the vendor to obtain the patch.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 15 Apr 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Gss
Gss vitalsesp |
|
| CPEs | cpe:2.3:a:gss:vitalsesp:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Gss
Gss vitalsesp |
Tue, 24 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 24 Mar 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Galaxy Software Services Corporation
Galaxy Software Services Corporation vitals Esp |
|
| Vendors & Products |
Galaxy Software Services Corporation
Galaxy Software Services Corporation vitals Esp |
Tue, 24 Mar 2026 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vitals ESP developed by Galaxy Software Services has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to execute certain functions to obtain sensitive information. | |
| Title | Galaxy Software Services|Vitals ESP - Missing Authentication | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2026-03-24T14:32:28.738Z
Reserved: 2026-03-23T10:47:15.457Z
Link: CVE-2026-4640
Updated: 2026-03-24T14:32:25.659Z
Status : Analyzed
Published: 2026-03-24T05:16:25.387
Modified: 2026-04-15T16:27:42.610
Link: CVE-2026-4640
No data.
OpenCVE Enrichment
Updated: 2026-03-25T20:40:08Z