CVE-2026-73769: Authenticated Remote Code Execution in CPPM Web Interface
Published Sep 9, 2026
·Updated
A vulnerability in the web-based management interface of vulnerable CPPM systems could allow an authenticated remote attacker to achieve remote code execution. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system.
Affected Software
1 affected component
CPPM Web Interface
Event History
Sep 9, 2026
CVE Published
via MITRE·07:13 PM
Data Sourced
via MITRE·07:13 PM
DescriptionSeverity
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The attacker must have network access to the CPPM web interface and high privileges on the affected system. No user interaction is required, and the attack complexity is rated low.