CVE-2026-70408

Summary

An incorrect authorization vulnerability exists in acmailer, which may allow a user to create a sub-account that has administrative privileges.

Affected Software

VendorProductVersion RangeStatus
Extra Innovation Inc.acmailer CGI0 < 4.1.2affected
Extra Innovation Inc.acmailer DB0 < 1.2.2affected

Weaknesses

  • CWE-863: Incorrect authorization

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References