Tegalog -Fumy Otegaru Memo Logger- provided by Nishishi Factory contains a vulnerability due to a permissive regular expression, which may allow an attacker who can access the affected product to log in to the management console. As a result, the attacker may perform any operations available from the management console.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 11 Aug 2026 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Nishishi Factory
Nishishi Factory tegalog -fumy Otegaru Memo Logger-
Vendors & Products Nishishi Factory
Nishishi Factory tegalog -fumy Otegaru Memo Logger-

Mon, 10 Aug 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 10 Aug 2026 08:45:00 +0000

Type Values Removed Values Added
Title Permissive Regular Expression Enabling Management Console Login in Tegalog -Fumy Otegaru Memo Logger

Mon, 10 Aug 2026 07:45:00 +0000

Type Values Removed Values Added
Description Tegalog -Fumy Otegaru Memo Logger- provided by Nishishi Factory contains a vulnerability due to a permissive regular expression, which may allow an attacker who can access the affected product to log in to the management console. As a result, the attacker may perform any operations available from the management console.
Weaknesses CWE-625
References
Metrics cvssV3_1

{'score': 8.6, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L'}

cvssV4_0

{'score': 8.8, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:H/VA:L/SC:N/SI:N/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2026-08-10T17:39:20.255Z

Reserved: 2026-07-27T06:27:45.155Z

Link: CVE-2026-64940

cve-icon Vulnrichment

Updated: 2026-08-10T17:39:16.553Z

cve-icon NVD

Status : Received

Published: 2026-08-10T08:16:48.733

Modified: 2026-08-10T18:18:48.160

Link: CVE-2026-64940

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-11T14:26:04Z

Weaknesses