CVE-2026-12070EPSS p14.4%
CVE-2026-12070CVE-2026-12070
Description
Tobit Laboratories AG TeamDavid's Webbox is vulnerable to an arbitrary file deletion
vulnerability in the send email, fax, SMS, etc. functionality. By
specifying an @@COMMENTFILE command in the form field scjob, any file on
the system can be deleted. This issue affects TeamDavid through Rollout 524.
Scoring
| EPSS | 0.24% probability of exploitation · percentile 14.4% · 2026-08-08T12:02:54Z |
| Last modified | 2026-08-07 |