Exposure of Sensitive System Information in XING CPTrans-ME-X Product
CVE-2026-66840

8.7HIGH

Key Information:

Vendor

Xing Inc.

Vendor
CVE Published:
4 September 2026

What is CVE-2026-66840?

The XING CPTrans-ME-X product is susceptible to an exposure of sensitive system information. This vulnerability can allow unauthorized entities to gain access to confidential data, potentially compromising the integrity and confidentiality of the system. Proper security measures should be implemented to safeguard against unauthorized access, ensuring that sensitive data remains protected from external threats.

Affected Version(s)

XING CPTrans-ME-X 0 < 1.8.1.17

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

CVSS V3.0

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.