Skip to main navigation Skip to main content Skip to page footer

CVE-2026-32178 - .NET Spoofing Vulnerability in Bundled Microsoft Components

Security Advisories IBA-2026-09

绿色背景带有圆形数字界面设计。
Publishing Date 2026-05-06
Last Update 2026-05-06
Tracking IDIBA-2026-09

Summary

A vulnerability (CVE-2026-32178) has been disclosed in Microsoft .NET. Improper neutralization of special elements allows an unauthorized attacker to perform spoofing over a network (Source: NVD, published 2026-04-14). The affected .NET component is bundled with several iba products. As a result, the listed products inherit this vulnerability and must be updated. No exploitation targeting iba products is known at this time.

Affected products

This applies to all iba products up to the versions listed below:

  • ibaCMC v3.7.1

How do I know that I’m affected?

If you have installed any of the products listed above in a version at or below the one indicated, you are affected.

Solution

With the following versions, the issue has been fixed:

  • ibaCMC v3.7.2

Customer Actions

Please install the update as described in the Solution section.

Timeline

2026-04-23Noted by the Security Team
2026-05-06Solution implement in ibaCMC v3.7.2
返回列表视图

你今天想做什么?

选择国家后,我的请求将转发给 iba AG 负责销售和支持的国家分支机构。隐私政策