# CVE-2026-6623

> Vulnerability · severity: **LOW** (CVSS 2.4).

## Description

A security flaw has been discovered in BichitroGan ISP Billing Software 2025.3.20. This impacts an unknown function of the file /?_route=settings/users-view/ of the component Profile Page Handler. Performing a manipulation results in cross site scripting. The attack is possible to be carried out remotely. The vendor was contacted early about this disclosure but did not respond in any way.

## Key facts

- **CVE ID:** CVE-2026-6623
- **Published:** 2026-04-20
- **CVSS severity:** LOW
- **CVSS base score:** 2.4
- **CWE codes:** CWE-79, CWE-94

## Primary sources

- NIST NVD: https://nvd.nist.gov/vuln/detail/CVE-2026-6623

## Citation

> AI Analytics. CVE-2026-6623. Retrieved 2026-07-20 from https://api.ai-analytics.org/cve/CVE-2026-6623. Derived from NIST NVD. Licensed CC0.

---

*[Dataset catalog](https://api.ai-analytics.org/datasets/) · [AI Analytics](https://api.ai-analytics.org/) · CC0 1.0*