216.73.216.233

CVE-2026-34028

· Published 15/06/2026 14:16 · Modified 15/06/2026 21:05 · Author: The MITRE Corporation

Labels: CVE-2026-34028 2026-06-15551230f0-3615-47bd-b7cc-93e92e730bbfCVE-2026-34028CWE-425

Essential information

Published
15/06/2026 14:16
Modified
15/06/2026 21:05
Author
The MITRE Corporation
Creator
The MITRE Corporation
CVSS
6.9 MEDIUM (v3) 6.9 MEDIUM (v4.0)
CISA KEV
No
CWE
CWE-425
CVSS vector

CVSS metrics

Description

The Wertheim SafeController Software, AssemblyVersion 6.15.8328.28014, exposes web-accessible file paths that are not protected by an authorization scheme. An unauthenticated attacker can directly access HTTP endpoints to download files from locations such as /Resources/CompanyId_[ID]/Audio/ and /SafeData/.

NVD status

Status
Deferred — CVE has been recently published to the CVE List and has been received by the NVD.
Source
551230f0-3615-47bd-b7cc-93e92e730bbf
NVD
View on NVD

Affected products (CPE)

ProductCPE
wertheim / safecontroller cpe:2.3:a:wertheim:safecontroller:*:6.15.8328.28014:*:*:*:*:*:*

References