CVE-2026-18610: NewType WebEIP EIP_Com_FileList.aspx improper authentication
Published Aug 3, 2026
·Updated
A vulnerability was detected in NewType WebEIP up to 3.0. This affects an unknown part of the file /EIPComFileList.aspx. The manipulation results in improper authentication. It is possible to launch the attack remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
1 affected component
NewType WebEIP<=3.0
Event History
Aug 3, 2026
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-18610?
CVE-2026-18610 has a medium severity rating of 5.3.
2
How do I fix CVE-2026-18610?
To remediate CVE-2026-18610, updating NewType WebEIP to the latest patched version is recommended.
3
What type of vulnerability is CVE-2026-18610?
CVE-2026-18610 is categorized as an improper authentication vulnerability.
4
Can CVE-2026-18610 be exploited remotely?
Yes, CVE-2026-18610 can be exploited remotely, making it a significant risk.
5
Which software is affected by CVE-2026-18610?
CVE-2026-18610 affects NewType WebEIP versions up to 3.0.