CVE-2026-55729

Summary

Exposure of Sensitive Information (CWE-200) in LWEB802 browser localStorage in Loytec LWEB-802 before 5.0.8 on all platforms allows an unauthenticated remote attacker to leak stored management credentials via a crafted link.

Affected Software

VendorProductVersion RangeStatus
LoytecLWEB-8020 < 5.0.8affected

Weaknesses

  • CWE-200: CWE-200 Exposure of sensitive information to an unauthorized actor

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References