PT-2026-57258 · Deloitte · Ai Assist For Customer
CVE-2026-57475
·
Published
2026-07-10
·
Updated
2026-07-21
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Deloitte AI Assist for Customer (affected versions not specified)
Description
Public-facing API endpoints accepted unauthenticated POST requests, allowing a remote attacker to make limited additions to the configuration. These additions were not utilized by the system.
Recommendations
Restrict network access and enforce authentication for the affected API endpoints.
Fix
Missing Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ai Assist For Customer