SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-71624

CRITICAL · CVSS 9.8 EPSS 0.52%

Source: NVD + CISA KEV + EPSS · Published 2026-09-04 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

esoTalk v.1.0.0g4 is vulnerable to remote code execution due to flaws in the ETMemberModel, ETMemberController, and ET class components, allowing attackers to execute arbitrary code on the server. Organizations using this version should prioritize patching or upgrading to mitigate potential exploitation risks, as the severity of the vulnerability could lead to significant security breaches.

CVE
CVE-2026-71624
Severity
CRITICAL
CVSS
9.8
EPSS
0.52%

Original NVD Description

An issue in esoTalk v.1.0.0g4 allows a remote attacker to execute arbitrary code via the core/models/ETMemberModel.class.php, core/controllers/ETMemberController.class.php, and core/lib/ET.class.php components