Vulnerability Description
KTM System e-BOK enforces a maximum password length of six numeric digits and does not permit the use of any alphabetic, special, or extended characters. This issue was fixed in the patch published in June 2026.
Related Weaknesses (CWE)
References
- https://cert.pl/posts/2026/06/CVE-2026-35095/
- https://ktmsystem.pl/internetowe-biuro-obslugi-klienta/
FAQ
What is CVE-2026-35097?
CVE-2026-35097 is a documented vulnerability. KTM System e-BOK enforces a maximum password length of six numeric digits and does not permit the use of any alphabetic, special, or extended characters. This issue was fixed in the patch published i...
How severe is CVE-2026-35097?
CVSS scoring is not yet available for CVE-2026-35097. Check NVD for updates.
Is there a patch for CVE-2026-35097?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.