CyberRota Analysis
AI-GeneratedA vulnerability in Universal Plug and Play (upnp.dll) allows authorized attackers to exploit uninitialized resources, potentially leading to local information disclosure. Organizations utilizing UPnP services should prioritize addressing this issue to mitigate risks associated with unauthorized data access. This is particularly relevant for environments where UPnP is enabled and accessible.
CVE
CVE-2026-50455
Severity
MEDIUM
CVSS
5.5
EPSS
0.30%
Original NVD Description
Use of uninitialized resource in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.
Related CVEs
Other vulnerabilities affecting the same vendor(s)