CVE-2026-84149: Information Disclosure Vulnerability in Manacle Technologies ERP System
Published Sep 1, 2026
·Updated
This vulnerability exists in the ERP system due to exposure of repository information through a publicly accessible .git directory. An unauthenticated remote attacker could exploit this vulnerability by accessing the exposed .git directory and retrieving repository metadata and associated files, which could allow reconstruction of the application's source code.
Affected Software
1 affected component
Manacle Technologies ERP System
Event History
Sep 1, 2026
CVE Published
via MITRE·12:44 PM
Data Sourced
via MITRE·12:44 PM
RemedyDescriptionWeakness
Frequently Asked Questions
1
Who can exploit this issue?
Any unauthenticated remote attacker who can reach the ERP system's publicly accessible .git directory could retrieve repository metadata and associated files.
2
What could an attacker obtain from the exposed directory?
The exposed .git directory may allow retrieval of repository metadata and associated files, potentially enabling reconstruction of the application's source code.