SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-40430

HIGH · CVSS 7.5 EPSS 0.23%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

Versions 3.2.1a14 and earlier of Pronetiqs IntraVUE are vulnerable due to the insecure storage of passwords in plaintext, potentially allowing attackers to access sensitive credentials via the API. This vulnerability poses a significant risk of unauthorized access and should be prioritized by organizations using affected versions of IntraVUE to mitigate potential data breaches and ensure the security of their systems.

CVE
CVE-2026-40430
Severity
HIGH
CVSS
7.5
EPSS
0.23%

Original NVD Description

Pronetiqs IntraVUE Versions 3.2.1a14 and prior have a plaintext storage of a password vulnerability that could expose cleartext credentials through the API.