What is CVE-2026-17192?
CVE-2026-17192 is a vulnerability in a VCO feature where insufficient validation of caller-supplied input allows authenticated tenant accounts to make requests to otherwise inaccessible internal services. This requires at least an Enterprise Standard Admin role to exploit. Organizations should apply relevant patches and review network segmentation immediately.
Azərbaycanca: CVE-2026-17192 zəifliyi VCO funksiyasında giriş validasiyasının çatışmazlığı səbəbindən autentifikasiya olunmuş kirayəçi hesabları adından daxili xidmətlərə icazəsiz sorğular göndərilməsinə imkan verir. Bu, ən azı Enterprise Standard Admin rolu tələb edir. Təşkilatlar dərhal müvafiq yamaqları tətbiq etməli və şəbəkə seqmentasiyasını yoxlamalıdır.
Related CVEs
link basis: same weakness class CWE-862
FAQ2
What is the minimum role level required to exploit CVE-2026-17192?
Exploiting this vulnerability requires at least an Enterprise Standard Admin role.
What is the root cause of CVE-2026-17192?
The vulnerability is caused by insufficient validation of caller-supplied input in the VCO feature.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.