CVE-2026-2336
EUVD-2026-2327216.04.2026, 18:16
A privilege escalation vulnerability in Microchip IStaX allows an authenticated low-privileged user to recover a shared per-device cookie secret from their own webstax_auth session cookie and forge a new cookie with administrative privileges.This issue affects IStaX before 2026.03.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| microchip | istax | 𝑥 < 2026.03 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration