CVE-2026-2459HIGH 8.1EPSS p24.6%

CVE-2026-2459CVE-2026-2459

Description

A vulnerability exists in REB500 for an authenticated user with Installer role to access and alter the contents of directories that the role is not authorized to do so.

Scoring

CVSS 3.18.1 (HIGH)
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
EPSS0.33% probability of exploitation · percentile 24.6% · 2026-06-19T12:03:05Z
Published2026-02-24
Last modified2026-04-06

Underlying weaknesses· 1

CWE-267

References

  1. https://publisher.hitachienergy.com/preview?DocumentID=8DBD000217&LanguageCode=en&DocumentPartId=&Action=Launch

1

TypeTargetConfidenceTier
WeaknessPrivilege Defined With Unsafe Actionscwe-2670%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
CVE-2026-2460
CVE
CVE-2025-52692
CVE
CVE-2025-1393
CVE
CVE-2025-57790
CVE
CVE-2026-23595
CVE
CVE-2025-59469
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.