CVE-2026-82792: Contec Co., Ltd Can-2-USB
Medium severity, CVSS 5.2. EPSS: 0.2% chance of exploitation in the next 30 days.
Cross-site scripting vulnerability exists in Contec CAN 2.0B Communication Wireless LAN / USB Converter Unit. If this vulnerability is exploited, an arbitrary script may be executed on a logged-in user's web browser.
Affected products
- Contec Co., Ltd Can-2-USB: before 2.20 (fixed in 2.20)
- Contec Co., Ltd Can-2-Wf: before 2.20 (fixed in 2.20)
Published 2026-09-14. Last modified 2026-09-16.