Use of Default Password Vulnerability in XING CPTrans-ME-X
CVE-2026-69657

9.3CRITICAL

Key Information:

Vendor

Xing Inc.

Vendor
CVE Published:
4 September 2026

What is CVE-2026-69657?

XING CPTrans-ME-X suffers from a critical vulnerability that allows unauthorized access due to a default password configuration. This weakness enables anyone aware of the default credentials to log into the affected device, potentially compromising sensitive information and control over the system. It is essential for users to change default credentials promptly to mitigate risks associated with unauthorized access.

Affected Version(s)

XING CPTrans-ME-X 0 < 1.8.1.17

References

CVSS V4

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

CVSS V3.0

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.