CVE-2026-4584Disclosure

LOWCVSS 1.3 · LOW

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A flaw has been found in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. This affects an unknown part of the component Cardholder Data Handler. Executing a manipulation can lead to cleartext transmission of sensitive information. The attack requires access to the local network. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The vendor was contacted early about this disclosure but did not respond in any way.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-310CWE-319

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-03-23: 2Technical Details · 2026-03-23: 203-23
Signal classification1 categories
Disclosure
2100.0%
Referenced assets3 URLs
Full discourse2 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-4584 Sensitive Information Disclosure Vulnerability in Shenzhen HCC MPO... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-4584 Vulnerability Alert Subscriptions: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=1

    Post summary

    The tweet announces CVE-2026-4584 as a sensitive information disclosure vulnerability in Shenzhen HCC MPO, linking to a detail page but providing no PoC, exploit, active exploitation evidence, or patch information.

    0000045
    4.0K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-4584 - Shenzhen HCC Technology MPOS M6 PLUS Cardholder Data cleartext transmission Intel Report: https://ift.tt/0iCk64t

    Post summary

    An alert has been issued for CVE‑2026‑4584, highlighting that the Shenzhen HCC Technology MPOS M6 PLUS system transmits cardholder data in cleartext.

    00000228
    289 followersView on X

Explore more