CVE-2026-4584 describes a flaw in the Cardholder Data Handler component of Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N, potentially leading to the cleartext transmission of sensitive information. This vulnerability is rated with a CVSS score of 3.1 (LOW), requiring adjacent network access and a high level of attack complexity, making exploitation difficult. There is currently no evidence of active exploitation, nor is any public exploit code available, with minimal community discussion or media coverage surrounding this issue.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Shenzhen HCC Technology | MPOS M6 PLUS | 1V.31-NCNA affected |
CVSS version used by this source: 4.0
CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.0 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.