VYPR

Cryptobox

by Ercom

CVEs (2)

  • CVE-2026-0873MedFeb 4, 2026
    risk 0.31cvss epss 0.00

    On a Cryptobox platform where administrator segregation based on entities is used, some vulnerabilities in Ercom Cryptobox administration console allows an authenticated entity administrator with knowledge to elevate his account to global administrator.

  • CVE-2025-14266LowDec 17, 2025
    risk 0.04cvss epss 0.00

    CSRF in Ercom Cryptobox administration console allows attacker to trigger some actions on behalf of a Cryptobox administrator. The attack requires the administrator to browse a malicious web site or to click a link while he has an open session on the administration console.