AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-54216

MEDIUM · CVSS 5.3 EPSS 0.28%

Source: NVD + CISA KEV + EPSS · Published 2026-08-07 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

The Tobit Laboratories AG TeamDavid's Webbox application is vulnerable to a reflected cross-site scripting (XSS) flaw, which allows attackers to execute malicious scripts in a victim's browser by crafting a specific link. This vulnerability, present in TeamDavid versions up to Rollout 524, poses a medium risk as it can lead to unauthorized actions or data exposure for users who interact with the malicious link. Organizations using this application should prioritize remediation to protect their users from potential exploitation.

CVE
CVE-2026-54216
Severity
MEDIUM
CVSS
5.3
EPSS
0.28%

Original NVD Description

Tobit Laboratories AG TeamDavid's Webbox application contains a reflected cross-site scripting (XSS) vulnerability. By sending a specially crafted link including an arbitrary path, an XSS payload or the parameter “EntryInfo”, and the parameter “!templateName=entryMail”, an attacker can cause the payload to execute in the victim’s browser when they click the link. This issue affects TeamDavid through Rollout 524.