What is CVE-2026-12571?
CVE-2026-12571 is an authentication bypass vulnerability in ManageEngine DDI Central's password-reset workflow. This flaw allows for account takeover. It is recommended to immediately apply the update provided by the vendor.
Azərbaycanca: CVE-2026-12571 ManageEngine DDI Central proqramının parol sıfırlama prosesində autentifikasiya bypass zəifliyidir. Bu boşluq hesabın ələ keçirilməsinə (account takeover) imkan verir. Dərhal istehsalçı tərəfindən təqdim olunan yeniləməni tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-287
FAQ2
What risk does CVE-2026-12571 pose?
This flaw allows for account takeover.
What is the recommended action against CVE-2026-12571?
It is recommended to immediately apply the update provided by the vendor.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.