AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-54211

CRITICAL · CVSS 9.5 EPSS 0.41% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-07 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

The Webbox application from Tobit Laboratories AG is vulnerable to a critical buffer overflow in the endpoint “//serverClient_close.html,” which can be exploited by authenticated attackers through excessively long input values. This vulnerability may lead to a denial of service and, under certain conditions, could allow for remote code execution, potentially compromising the entire server. Organizations using TeamDavid versions up to Rollout 524 should prioritize immediate remediation to mitigate these risks.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit remote code execution code execution

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-54211
Severity
CRITICAL
CVSS
9.5
EPSS
0.41%

Original NVD Description

Tobit Laboratories AG TeamDavid's Webbox application’s endpoint “//serverClient_close.html” is vulnerable to a buffer overflow vulnerability in multiple form data parameters. By submitting excessively long values in these parameters, an authenticated attacker can trigger a server crash, resulting in denial of service. Depending on the stack state or if a stack canary can be disclosed through another vulnerability, this buffer overflow could potentially be exploited for remote code execution, leading to full compromise of the server. This issue affects TeamDavid through Rollout 524.