What is CVE-2026-54214?
This vulnerability allows HTTP header injection in Tobit Laboratories AG's TeamDavid Webbox application via the "cType" URL parameter, enabling arbitrary modification of response headers. It could lead to attacks like XSS. Users are advised to apply the security update from the vendor immediately.
Azərbaycanca: Bu boşluq Tobit Laboratories AG-nin TeamDavid Webbox tətbiqində "cType" URL parametri vasitəsilə HTTP header injection həyata keçirməyə imkan verir. Bu, cavab başlıqlarını dəyişərək XSS kimi hücumlara yol aça bilər. İstifadəçilərə dərhal istehsalçı tərəfindən təqdim edilən təhlükəsizlik yeniləməsini tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: shared vendor: Tobit Laboratories AG
FAQ2
Which product of Tobit Laboratories AG is affected by CVE-2026-54214?
This vulnerability affects the TeamDavid Webbox application by Tobit Laboratories AG.
Through which parameter is the HTTP header injection attack carried out in CVE-2026-54214?
The HTTP header injection is carried out via the "cType" URL parameter.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.