SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-54799

MEDIUM · CVSS 6.7 EPSS 0.13% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-07-09 · Last synced 2026-08-08

CyberRota Analysis

AI-Generated

The vulnerability affects the firmware update mechanism of CPCI85 Central Processing/Communication and SICORE Base system versions prior to V26.20, allowing attackers to bypass signature validation. Successful exploitation could enable the installation of malicious firmware, resulting in persistent code execution and potential system compromise. Organizations using these affected systems should prioritize patching to mitigate the risk of exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
code execution

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-54799
Severity
MEDIUM
CVSS
6.7
EPSS
0.13%

Original NVD Description

A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V26.20), SICORE Base system (All versions < V26.20.0). The affected application contains a vulnerability in its firmware update mechanism's signature validation process. This could allow an attacker to install malicious firmware, leading to persistent code execution and system compromise.