πŸ” CVE Alert

CVE-2026-54210

UNKNOWN 0.0

TeamDavid: Buffer Overflow in file names of file upload functionalities

CVSS Score
0.0
EPSS Score
0.7%
EPSS Percentile
48th

Tobit Laboratories AG TeamDavid's Webbox application implements various file upload functionalities that are vulnerable to a buffer overflow condition. By specifying an excessively long filename in a file upload request, an unauthenticated attacker can trigger a crash of the server, resulting in a denial of service. Depending on the stack state or if a stack canary can be disclosed through another vulnerability, this buffer overflow could potentially be exploited for remote code execution, leading to full compromise of the server.Β This issue affects TeamDavid through Rollout 524.

CWE CWE-787
Vendor tobit laboratories ag
Product teamdavid
Published Aug 7, 2026
Last Updated Aug 7, 2026
Stay Ahead of the Next One

Get instant alerts for tobit laboratories ag teamdavid

Be the first to know when new unknown vulnerabilities affecting tobit laboratories ag teamdavid are published β€” delivered to Slack, Telegram or Discord.

Get Free Alerts β†’ Free Β· No credit card Β· 60 sec setup

Affected Versions

Tobit Laboratories AG / TeamDavid
0 ≀ Rollout 524

References

NVD β†— CVE.org β†— EPSS Data β†—
david.tobit.software: https://david.tobit.software/releasenotes labs.infoguard.ch: https://labs.infoguard.ch/posts/22-cves-in-david-a-secure-m365-alternative/

Credits

Lucas Dodgson of InfoGuard Labs