{"id":"CVE-2026-107104","title":"This vulnerability exists in the ERP system due to unsafe deserialization of user controlled data in the affected functionality","summary":"This vulnerability exists in the ERP system due to unsafe deserialization of user controlled data in the affected functionality. An unauthenticated remote attacker could exploit this vulnerability by supplying specially crafted data to t…","severity":"critical","cvss":9.3,"cvssVector":"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N","cwe":["CWE-502"],"vendor":"Manacle Technologies","product":"Multi-tenant ERP System","affected":["multi-tenant_erp_system version"],"published":"2026-10-07","updated":"2026-10-07","sourceUpdated":"2026-10-07T19:17:33.483","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-107104","references":[{"url":"https://www.cert-in.org.in/s2cMainServlet?pageid=PUBVLNOTES01&VLCODE=CIVN-2026-0430","label":"vdisclose@cert-in.org.in"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"yes","technicalImpact":"total","timestamp":"2026-10-07T18:06:40.506463Z"},"cvssSource":"cna","ingestedAt":"2026-10-07T09:22:30.526Z","epss":0.00423,"epssPercentile":0.34559,"slug":"CVE-2026-107104","body":"## Overview\n\nThis vulnerability exists in the ERP system due to unsafe deserialization of user controlled data in the affected functionality. An unauthenticated remote attacker could exploit this vulnerability by supplying specially crafted data to the vulnerable functionality of the targeted system. \n\nSuccessful exploitation of this vulnerability could allow the attacker to execute arbitrary code, manipulate application data or perform other unintended actions on the targeted system.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"midnight","depthScore":51,"depthScoreParts":{"impact":51.2,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}