SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-14354

HIGH · CVSS 8.7 EPSS 0.12%

Source: NVD + CISA KEV + EPSS · Published 2026-07-29 · Last synced 2026-08-28

CyberRota Analysis

AI-Generated

A vulnerability exists that allows local privileged attackers to exploit weaknesses in the handling and protection of stored credentials, leading to potential authentication bypass and unauthorized modification of credentials. This could result in the compromise of managed devices. Organizations utilizing the affected application should prioritize addressing this issue to safeguard against unauthorized access and potential breaches.

CVE
CVE-2026-14354
Severity
HIGH
CVSS
8.7
EPSS
0.12%

Original NVD Description

CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in the handling and protection of stored credentials within the application.