SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-18192

MEDIUM · CVSS 6.5 EPSS 0.38% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-07-29 · Last synced 2026-08-28

CyberRota Analysis

AI-Generated

The VIN-DS783E-E6 device by Vacron is vulnerable to an Arbitrary File Read issue due to a Relative Path Traversal flaw, enabling authenticated remote attackers to access and download sensitive system files. This vulnerability poses a medium risk, potentially leading to unauthorized data exposure. Organizations using this device should prioritize patching to mitigate the risk of exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-18192
Severity
MEDIUM
CVSS
6.5
EPSS
0.38%

Original NVD Description

VIN-DS783E-E6 developed by Vacron has an Arbitrary File Read vulnerability, allowing authenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.