AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-54210

CRITICAL · CVSS 9.5 EPSS 0.47% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-07 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

The Webbox application by Tobit Laboratories AG is vulnerable to a buffer overflow due to improper handling of file upload functionalities, allowing unauthenticated attackers to crash the server and potentially achieve remote code execution. This critical vulnerability, affecting TeamDavid through Rollout 524, poses a significant risk to any organization using the application, particularly those handling sensitive data or requiring high availability. Organizations should prioritize patching or mitigating this vulnerability to prevent potential exploitation and ensure server integrity.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit remote code execution code execution

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-54210
Severity
CRITICAL
CVSS
9.5
EPSS
0.47%

Original NVD Description

Tobit Laboratories AG TeamDavid's Webbox application implements various file upload functionalities that are vulnerable to a buffer overflow condition. By specifying an excessively long filename in a file upload request, an unauthenticated attacker can trigger a crash of the server, resulting in a denial of service. Depending on the stack state or if a stack canary can be disclosed through another vulnerability, this buffer overflow could potentially be exploited for remote code execution, leading to full compromise of the server. This issue affects TeamDavid through Rollout 524.