Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.8

CVE-2026-12692: Vimesoft Enterprise Video Platform Password Change Bypass

CVE-2026-12692 CVE-2026-12692
Summary

The Vimesoft Enterprise Video Platform has a weakness in its password change process. This means that a malicious user could potentially change someone else's password without needing to know the current password. To protect your system, update to the latest version of the Enterprise Video Platform.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versions
vimesoft inc. enterprise video platform < 3.25.0
Original title
Unverified password change vulnerability in Vimesoft Inc. Enterprise Video Platform allows Authentication Bypass. This issue affects Enterprise Video Platform: from 3.11.0.0 before 3.25.0.
Original description
Unverified password change vulnerability in Vimesoft Inc. Enterprise Video Platform allows Authentication Bypass.

This issue affects Enterprise Video Platform: from 3.11.0.0 before 3.25.0.
mitre CVSS3.1 9.8
Vulnerability type
CWE-620
Published: 17 Jul 2026 · Updated: 18 Jul 2026 · First seen: 17 Jul 2026