SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-14837

HIGH · CVSS 7.8 EPSS 0.08% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-07-27 · Last synced 2026-08-26

CyberRota Analysis

AI-Generated

Multiple Lenze products are vulnerable due to an improper signature verification issue in their SSH enablement mechanism, allowing low-privileged local attackers to bypass file signature verification. This could lead to unauthorized administrative access and complete system compromise. Organizations using affected Lenze products should prioritize addressing this vulnerability to mitigate the risk of exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-14837
Severity
HIGH
CVSS
7.8
EPSS
0.08%

Original NVD Description

Multiple Lenze products are affected by an improper signature verification vulnerability in the SSH enablement mechanism. A low-privileged local attacker can bypass verification of the SSH enable file signature and enable SSH access on the device. Successful exploitation may result in unauthorized administrative access and complete system compromise.