SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-62928

CRITICAL · CVSS 9.8 EPSS 1.22%

Source: NVD + CISA KEV + EPSS · Published 2026-09-04 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

XING CPTrans-ME-X is vulnerable to an OS Command Injection, allowing unauthenticated attackers to execute arbitrary commands on the underlying operating system. This critical vulnerability, with a CVSS score of 9.8, poses a significant risk of system compromise and data breach. Organizations using this product should prioritize immediate remediation to mitigate potential exploitation.

CVE
CVE-2026-62928
Severity
CRITICAL
CVSS
9.8
EPSS
1.22%

Original NVD Description

XING CPTrans-ME-X contains an OS Command Injection (CWE-78). Unauthenticated OS command may be injected.