CVE-2026-66840
XING CPTrans-ME-X contains an Exposure of Sensitive System Information to an Unauthorized Control Sphere (CWE-497). Sensitive system information may be leaked.
Scoring
- Severity
- HIGH
- CVSS base score
- 8.7
- CVSS vector
- CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
- EPSS probability
- 0.26%
- CWE
- CWE-497
- Published
- 2026-09-04
- Last modified
- 2026-09-04
Affected products
- Xing Inc. XING CPTrans-ME-X
Weakness type
Related vulnerabilities
- CVE-2026-61911 — An issue was discovered in Cyrus IMAP before 3.12.4. There is a Sieve mailbox existence oracle. An...
- CVE-2026-81394 — Microsoft Excel Information Disclosure Vulnerability
- CVE-2026-81387 — Microsoft Excel Information Disclosure Vulnerability
- CVE-2026-69315 — Windows License Manager Information Disclosure Vulnerability
- CVE-2026-68842 — Windows MIDI Service Module Information Disclosure Vulnerability
- CVE-2026-71330 — Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability
- CVE-2026-69832 — Win32k Information Disclosure Vulnerability
- CVE-2026-69723 — Windows Kernel Information Disclosure Vulnerability