CVE-2026-82767: Medium severity SGA1000 vulnerability
Published Sep 14, 2026
·Updated
Cross-site scripting vulnerability exists in SGA1000. If this vulnerability is exploited, an arbitrary script may be executed on a logged-in user's web browser.
Affected Software
1 affected component
SGA1000
Event History
Sep 14, 2026
CVE Published
via MITRE·06:38 AM
Data Sourced
via MITRE·06:38 AM
DescriptionSeverity
Frequently Asked Questions
1
What conditions must be met for exploitation?
The CVSS vector indicates an attacker needs adjacent-network access, requires no privileges, and relies on user interaction. The script is executed in the web browser of a logged-in user.
2
What is the expected impact if exploitation succeeds?
The reported impact is low confidentiality and low integrity impact, with no availability impact. The CVSS vector also indicates the impact extends beyond the vulnerable component's security authority.