← back
CVE-2026-5794mediumCWE-694

Vulnerability in Cryptobox allows an authenticated user to trigger an account lockout

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 4.9epss 0.3%
exploitation probability
0.3%top 83% of all CVEs
observed exploitation
nono source reports it
A vulnerability affecting the detailed versions of Cryptobox allows a legitimate user to prevent another to login by triggering an account lockout via sending a specially crafted request.
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U
Affected products
Ercom · Cryptobox