CVE-2023-26573: Idattend Idweb

Critical severity, CVSS 9.1. EPSS: 0.7% chance of exploitation in the next 30 days.

Missing authentication in the SetDB method in IDAttend’s IDWeb application 3.1.052 and earlier allows denial of service or theft of database login credentials.

Affected products

  • Idattend Idweb: up to and including 3.1.052

Published 2023-10-25. Last modified 2026-06-17.