CVE-2026-73786: Unauthenticated Network-Based Denial of Service in CPPM systems
Published Sep 9, 2026
·Updated
A vulnerability in the web-based management interface of CPPM could allow an unauthenticated remote attacker to conduct a Denial-of-Service (DoS) attack. Successful exploitation could allow an attacker to cause instability and degrade performance of the vulnerable CPPM server.
Affected Software
1 affected component
CPPM=
Event History
Sep 9, 2026
CVE Published
via MITRE·07:13 PM
Data Sourced
via MITRE·07:13 PM
DescriptionSeverity
Frequently Asked Questions
1
Does an attacker need credentials or user interaction to exploit this issue?
No. The CVSS vector indicates that exploitation is network-accessible, requires no privileges, and does not require user interaction.
2
What is the expected impact if exploitation succeeds?
The reported impact is on availability: the CPPM server may become unstable and suffer degraded performance. The CVSS vector reports no confidentiality or integrity impact.