SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-8793

MEDIUM · CVSS 6.9 EPSS 0.39% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-03 · Last synced 2026-09-02

CyberRota Analysis

AI-Generated

PaperCut NG/MF is vulnerable due to insufficient restrictions on excessive authentication attempts in its login component, allowing unauthenticated remote attackers to execute brute-force or credential-stuffing attacks without facing account lockout or rate-limiting. This could lead to unauthorized access to sensitive information or system control. Organizations using PaperCut NG/MF should prioritize addressing this vulnerability to safeguard against potential unauthorized access.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-8793
Severity
MEDIUM
CVSS
6.9
EPSS
0.39%

Original NVD Description

PaperCut NG/MF does not properly restrict excessive authentication attempts within its login component. An unauthenticated remote attacker can exploit this vulnerability to perform unrestricted brute-force or credential-stuffing attacks without triggering account lockout or rate-limiting mechanisms in some configurations.