CVE-2026-101265 Details
Description
A vulnerability was identified in Intelbras TIP 125i 4.3.35/4.3.41. The affected element is an unknown function of the component Básico Page. Such manipulation leads to inclusion of sensitive information in source code. The attack can be launched remotely. A high complexity level is associated with this attack. The exploitability is described as difficult. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure.
A vulnerability in Intelbras TIP 125i versions 4.3.35 and 4.3.41 allows for the remote inclusion of sensitive information in the source code, through manipulation of an unknown function in the Básico Page component. This vulnerability is associated with a high level of complexity, making exploitation difficult, although a public exploit is available.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Sep 29, 2026CISA-ADP
Assessed Sep 29, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://vuldb.com/submit/916125 | CISA-ADP | Issue TrackingPermission Required |
| https://vuldb.com/cve/CVE-2026-101265 | [email protected] | AdvisoryPermission Required |
| https://vuldb.com/submit/916125 | [email protected] | Issue TrackingPermission Required |
| https://vuldb.com/vuln/411033 | [email protected] | AdvisoryPermission Required |
| https://vuldb.com/vuln/411033/cti | [email protected] | Content Wall |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-200 | Exposure of Sensitive Information to an Unauthorized Actor | [email protected] |
| CWE-540 | Inclusion of Sensitive Information in Source Code | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| Intelbras TIP 125i | 4.3.35 (semver) 4.3.41 (semver) |
CPE
Remediation
| |
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Sep 29, 2026 | CVE Modified | CISA-ADP |
| Sep 29, 2026 | New CVE Received | [email protected] |
Volerion