CVE-2026-23550
CRITICAL 9.8EPSS 20.6%
Incorrect Privilege Assignment vulnerability in Modular DS Modular DS modular-connector allows Privilege Escalation.This issue affects Modular DS: from n/a through <= 2.5.1.
- CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS
- 20.63% chance of exploitation in the next 30 days, 97th percentile
- Nuclei
- high
- Published
- 2026-01-14
- Updated
- 2026-04-28
Proof-of-concept exploits (6)
- TheTorjanCaptain/CVE-2026-23550-PoC1★ · 2026-01-17
- dzmind2312/Mass-CVE-2026-23550-Exploit2★ · 2026-02-07
- DedsecTeam-BlackHat/CVE-2026-235501★ · 2026-02-26
- SangSenimanWartefak/CVE-2026-235500★ · 2026-06-11
- 1beelze/CVE-2026-235500★ · 2026-07-05
- baktistr/cve-2026-23550-poc0★ · 2026-07-20