LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →

CVE-2026-2465 - Vulnerability Analysis

HighCVSS: 8.8

Last Updated: May 12, 2026

E-Kalite Turboard FOR-S - Broken Access Control

Published: May 12, 2026Updated: May 12, 2026Remote Exploitable

Overview

E-Kalite Turboard FOR-S >= 7.01.2026 < 18.02.2026 contains an authorization bypass caused by incorrect authorization logic, letting attackers escalate privileges, exploit requires attacker to bypass authorization checks.

Severity & Score

Severity: High
CVSS Score: 8.8
EPSS Score: 3.8%(Probability of exploitation in next 30 days)

Impact

Attackers can escalate their privileges, gaining unauthorized access to restricted functions or data.

Mitigation

Upgrade to version 18.02.2026 or later.

Social Media Activity(4 posts)

TheHackerWire
TheHackerWire
@thehackerwire
May 12, 2026

🟠 CVE-2026-2465 - High (8.8) Incorrect Authorization vulnerability in E-Kalite Software Hardware Engineering Design and Internet Services Industry and Trade Ltd. Co. Turboard FOR-S allows Privilege Escalation. This issue affects Turboard FOR-S: from 7.01.2026 before 18.02.2026. šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-2465/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post
TheHackerWire
TheHackerWire
@thehackerwire
May 12, 2026

🟠 CVE-2026-2465 - High (8.8) Incorrect Authorization vulnerability in E-Kalite Software Hardware Engineering Design and Internet Services Industry and Trade Ltd. Co. Turboard FOR-S allows Privilege Escalation. This issue affects Turboard FOR-S: from 7.01.2026 before 18.02.2026. šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-2465/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post
TheHackerWire
TheHackerWire
@thehackerwire
May 12, 2026

🟠 CVE-2026-2465 - High (8.8) Incorrect Authorization vulnerability in E-Kalite Software Hardware Engineering Design and Internet Services Industry and Trade Ltd. Co. Turboard FOR-S allows Privilege Escalation. This issue affects Turboard FOR-S: from 7.01.2026 before 18.02.2026. šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-2465/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post
TheHackerWire
TheHackerWire
@thehackerwire
May 12, 2026

🟠 CVE-2026-2465 - High (8.8) Incorrect Authorization vulnerability in E-Kalite Software Hardware Engineering Design and Internet Services Industry and Trade Ltd. Co. Turboard FOR-S allows Privilege Escalation. This issue affects Turboard FOR-S: from 7.01.2026 before 18.02.2026. šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-2465/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post

Details

CVE ID
CVE-2026-2465
Severity
High
CVSS Score
8.8
Type
broken_access_control
Status
rejected
EPSS
3.8%
Social Posts
4

CWE

  • CWE-863

CVSS Metrics

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS Score

3.8%Probability of exploitation in the next 30 days