CVE-2026-2620General

LOWCVSS 5.5 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A weakness has been identified in Huace Monitoring and Early Warning System 2.2. Affected by this issue is some unknown functionality of the file /Web/SysManage/ProjectRole.aspx. Executing a manipulation of the argument ID can lead to sql injection. It is possible to launch the attack remotely. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-89

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 4 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • General: 3 classified signals
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-02-24); latest day: 1
  • 4 total mentions across 3 days

Deep dive

Activity timeline4 mentions / 3d
01122Mentions · 2026-02-18: 1Mentions · 2026-02-24: 2Mentions · 2026-03-16: 102-1802-2403-16
Signal classification2 categories
General
375.0%
Disclosure
125.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-02-181
General1
2026-02-242
Disclosure1General1
2026-03-161
General1
Full discourse4 posts
  • CVE@CVEnew
    General

    CVE-2026-2620 A weakness has been identified in Huace Monitoring and Early Warning System 2.2. Affected by this issue is some unknown functionality of the file /Web/SysManage/Project… https://www.cve.org/CVERecord?id=CVE-2026-2620

    Post summary

    A CVE-2026-2620 weakness is noted in Huace Monitoring and Early Warning System 2.2, but the description lacks detailed technical or exploit information.

    00010556
    56.5K followersView on X
  • RedPacket Security@RedPacketSec
    General

    CVE Alert: CVE-2026-2620 - Huace - Monitoring and Early Warning System - https://www.redpacketsecurity.com/cve-alert-cve-2026-2620-huace-monitoring-and-early-warning-system/ #OSINT #ThreatIntel #CyberSecurity #cve-2026-2620 #huace #monitoring-and-early-warning-system

    Post summary

    The post simply cites a CVE alert link without providing any details on the vulnerability, exploitation, or mitigation.

    10000107
    3.5K followersView on X
  • David@DavidMarquet19
    General

    📌 Top CVEs recientes (CVSS>=7.0): 1. 💉 CVE-2026-2620 (CVSS: 7.3) 2. 🧱 CVE-2026-26736 (CVSS: 8.8) 3. 🧱 CVE-2026-26732 (CVSS: 8.8) 4. 🧱 CVE-2026-26731 (CVSS: 8.8) 5. ⚠️ CVE-2026-24734 (CVSS: 7.5) #CyberSecurity #CVE #Infosec

    Post summary

    The post lists several recent CVEs with their CVSS scores but does not provide additional technical, exploit, or mitigation details.

    0000057
    169 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-2620 A weakness has been identified in Huace Monitoring and Early Warning System 2.2. Affected by this issue is some unknown functionality of the file /Web/SysManage/Project… https://www.cve.org/CVERecord?id=CVE-2026-2620 ----- Traducción: CVE-2026-2620 Se … http://infoflow.cloud`

    Post summary

    The post announces CVE-2026-2620, a weakness in Huace Monitoring and Early Warning System 2.2, but provides no further technical or exploit details.

    0000050
    53 followersView on X

Explore more