CVE-2026-54201

EUVD-2026-54433
Tobit Laboratories AG TeamDavid's Webbox  does not enforce authentication or authorization checks
 when serving these log files. As a result, attackers can obtain 
sensitive error information or internal application details, potentially
 aiding in further attacks. This issue affects TeamDavid before Rollout 528.

Starting with Rollout 528 (June 30, 2026), the affected functionality is disabled by default and the vulnerabilities are therefore no longer exposed through this functionality.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
UNKNOWN
---