CVE-2026-15471General

LOWCVSS 2.1 · LOW

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was found in Eleveo Call Recording Software 9.7.0. This affects an unknown part of the file /callrec/pci_dss_status.jsp. Performing a manipulation results in improper authorization. Remote exploitation of the attack is possible. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-266CWE-285

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • General: 2 classified signals
  • Disclosure: 1 classified signal
  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-07-12: 3Technical Details · 2026-07-12: 107-12
Signal classification2 categories
General
266.7%
Disclosure
133.3%
Referenced assets4 URLs
Full discourse3 posts
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-15471 A vulnerability was found in Eleveo Call Recording Software 9.7.0. This affects an unknown part of the file /callrec/pci_dss_status.jsp. Performing a manipulation res… https://www.cve.org/CVERecord?id=CVE-2026-15471 ----- Traducción: Se encontró una vu… http://infoflow.cloud`

    Post summary

    The post announces the discovery of CVE-2026-15471 in Eleveo Call Recording Software, citing a single file path and linking to the official CVE record, without offering technical details, a PoC, or evidence of exploitation.

    0000039
    92 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-15471 A vulnerability was found in Eleveo Call Recording Software 9.7.0. This affects an unknown part of the file /callrec/pci_dss_status.jsp. Performing a manipulation res… https://www.cve.org/CVERecord?id=CVE-2026-15471

    Post summary

    CVE-2026-15471 is reported with limited technical detail about the file path affected, and no evidence of exploitation, PoC, or patch.

    00000709
    57.8K followersView on X
  • MalwareObserver@MalwareObserver
    General

    🐛 VULNERABILITIES CVE Notify: 🚨 [CVE-2026-15471](https://drive.google.com/file/d/1mXPN23OQiKw9ui9ZUswn0-fOThfZt6xb/view?usp=shari... https://drive.google.com/file/d/1mXPN23OQiKw9ui9ZUswn0-fOThfZt6xb/view?usp=sharing #CVE #ZeroDay #PatchManagement

    Post summary

    A brief notification of CVE‑2026‑15471 with a link to a file, lacking specific details about exploitation, mitigation, or vulnerability characteristics.

    0000048
    10 followersView on X

Explore more