CVE-2026-54211
Severity CVSS v4.0:
CRITICAL
Type:
CWE-787
Out-of-bounds Write
Publication date:
07/08/2026
Last modified:
07/08/2026
Description
Tobit Laboratories AG TeamDavid&#39;s Webbox application’s endpoint “//serverClient_close.html” is vulnerable to a<br />
buffer overflow vulnerability in multiple form data parameters. By <br />
submitting excessively long values in these parameters, an authenticated<br />
attacker can trigger a server crash, resulting in denial of service. <br />
Depending on the stack state or if a stack canary can be disclosed <br />
through another vulnerability, this buffer overflow could potentially be<br />
exploited for remote code execution, leading to full compromise of the <br />
server. This issue affects TeamDavid through Rollout 524.
Impact
Base Score 4.0
9.50
Severity 4.0
CRITICAL



