SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-76133

CRITICAL · CVSS 9.8 EPSS 0.40% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-31 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

The vulnerability affects Exchange products that utilize a deprecated hashing algorithm for authentication processes, potentially allowing attackers to manipulate or predict the authentication exchange. This weakness significantly undermines the security of the authentication mechanism, leading to unauthorized access. Organizations using affected Exchange products should prioritize remediation to protect sensitive data and maintain system integrity.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-76133
Severity
CRITICAL
CVSS
9.8
EPSS
0.40%
Exchange

Original NVD Description

The affected Ebyte product uses a deprecated hashing algorithm in an authentication-related operation. Under conditions where an attacker can manipulate or predict the authentication exchange, the weak construction may reduce the assurance provided by the authentication mechanism and facilitate unauthorized access.