SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-50455

MEDIUM · CVSS 5.5 EPSS 0.30%

Source: NVD + CISA KEV + EPSS · Published 2026-07-14 · Last synced 2026-08-13

CyberRota Analysis

AI-Generated

A vulnerability in Universal Plug and Play (upnp.dll) allows authorized attackers to exploit uninitialized resources, potentially leading to local information disclosure. Organizations utilizing UPnP services should prioritize addressing this issue to mitigate risks associated with unauthorized data access. This is particularly relevant for environments where UPnP is enabled and accessible.

CVE
CVE-2026-50455
Severity
MEDIUM
CVSS
5.5
EPSS
0.30%

Original NVD Description

Use of uninitialized resource in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)