CVE-2026-82323: Improper Authorization in Enocta Educational's Enocta Platform
Published Sep 28, 2026
·Updated
Authorization bypass through User-Controlled key vulnerability in Enocta Educational Technologies Inc. Enocta Platform allows Exploitation of Trusted Identifiers.
This issue affects Enocta Platform: through 2026-09-28.
Affected Software
1 affected component
Enocta Educational Technologies Enocta Platform
Event History
Sep 28, 2026
CVE Published
via MITRE·12:36 PM
Data Sourced
via MITRE·12:36 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What level of attacker access is required?
The CVSS vector indicates the issue is remotely reachable over the network and requires low privileges. No user interaction is required.
2
What security impact can exploitation have?
The supplied CVSS vector indicates high confidentiality and integrity impact. It does not indicate an availability impact.
3
Which deployments should be treated as potentially affected?
The affected product is Enocta Educational Technologies' Enocta Platform, with the issue listed as affecting releases through 2026-09-28. No fixed version or configuration details are provided.