CVE-2026-54213EPSS p36.7%
CVE-2026-54213CVE-2026-54213
Description
Tobit Laboratories AG TeamDavid's Webbox application exposes a functionality that allows the server to be
shut down when a specific endpoint (/internalRestart) is accessed. This
endpoint is accessible to unauthenticated users over the public
Internet. Instead of “restarting”, the server shuts completely down. As a
result, a remote attacker can trigger a persistent denial of service by
shutting down the web server without requiring authentication. Recovery
requires manual administrator intervention to restart the service. This issue affects TeamDavid through Rollout 524.
Scoring
| EPSS | 0.45% probability of exploitation · percentile 36.7% · 2026-08-08T12:02:54Z |
| Last modified | 2026-08-07 |