Vulnerability Description
Vulnerability on the external sharing feature in Cryptobox allows an attacker knowing a sharing link URL to retrieve information from the server allowing an offline brute-force attack of the access code associated to this sharing link.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Thalesgroup | Ercom Cryptobox | >= 4.37.248, < 4.38.0 |
Related Weaknesses (CWE)
References
- https://info.cryptobox.com/doc/v4.40/4.40.en/Release Notes
FAQ
What is CVE-2026-6805?
CVE-2026-6805 is a vulnerability with a CVSS score of 7.5 (HIGH). Vulnerability on the external sharing feature in Cryptobox allows an attacker knowing a sharing link URL to retrieve information from the server allowing an offline brute-force attack of the access co...
How severe is CVE-2026-6805?
CVE-2026-6805 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-6805?
Check the references section above for vendor advisories and patch information. Affected products include: Thalesgroup Ercom Cryptobox.