CyberRota Analysis
AI-GeneratedTonda Core versions prior to 2.6 are vulnerable to unauthenticated local file inclusion, allowing attackers to access sensitive files on the server. This vulnerability poses a significant risk as it can lead to data exposure and potential system compromise. Organizations using affected versions should prioritize remediation to mitigate the risk of exploitation.
CVE
CVE-2026-28152
Severity
HIGH
CVSS
8.1
EPSS
0.28%
Original NVD Description
Unauthenticated Local File Inclusion in Tonda Core < 2.6 versions.