CVE-2026-0857
Deferred Deferred - Pending Action

Cleartext Storage of Sensitive Information in Mesalvo Meona Components

Vulnerability report for CVE-2026-0857, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-05-20

Last updated on: 2026-05-20

Assigner: ENISA

Description

Cleartext Storage of Sensitive Information in Memory vulnerability in Mesalvo Meona Client Launcher Component, Mesalvo Meona Server Component. This issue affects Meona Client Launcher Component: through 19.06.2020 15:11:49; Meona Server Component: through 2025.04 5+323020.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-05-20
Last Modified
2026-05-20
Generated
2026-06-30
AI Q&A
2026-05-20
EPSS Evaluated
2026-06-28
NVD
EUVD

Affected Vendors & Products

Showing 2 associated CPEs
Vendor Product Version / Range
mesalvo meona_client_launcher_component to 19.06.2020_15:11:49 (inc)
mesalvo meona_server_component to 2025.04_5+323020 (inc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-316 The product stores sensitive information in cleartext in memory.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability involves the cleartext storage of sensitive information in memory within the Mesalvo Meona Client Launcher Component and the Mesalvo Meona Server Component.

Storing sensitive data in cleartext in memory means that the information is not encrypted or protected, which could allow unauthorized users or processes with sufficient privileges to access this sensitive information.

Impact Analysis

The vulnerability can lead to exposure of sensitive information because it is stored in cleartext in memory.

An attacker or unauthorized user with local access and high privileges could potentially read this sensitive information, leading to confidentiality breaches.

According to the CVSS v3.1 score of 6.0 with vector AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N, the attack requires local access and high privileges but can result in a high impact on confidentiality.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-0857. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart