Description
Tobit Laboratories AG TeamDavid's Webbox application exposes a functionality that allows the server to be
shut down when a specific endpoint (/internalRestart) is accessed. This
endpoint is accessible to unauthenticated users over the public
Internet. Instead of “restarting”, the server shuts completely down. As a
result, a remote attacker can trigger a persistent denial of service by
shutting down the web server without requiring authentication. Recovery
requires manual administrator intervention to restart the service. This issue affects TeamDavid through Rollout 524.
Published: 2026-08-07
Score: 9.2 Critical
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

This vulnerability allows an unauthenticated user to remotely shut down the TeamDavid Webbox server by accessing the /internalRestart endpoint, which terminates the service rather than restarting it. The impact is a persistent denial of service because the attacker can bring the web server down over the public Internet, and recovery requires manual administrator intervention to restart the service. The weakness is unauthorized access to an internal control function, identified as CWE‑284.

Affected Systems

The affected vendor is Tobit Laboratories AG, product TeamDavid Webbox. The issue has been identified in Rollout 524 and any earlier or current releases that include that rollback. Additional CPE strings are not provided, but any system running that release of TeamDavid is susceptible. No specific version numbers beyond Rollout 524 are offered.

Risk and Exploitability

The CVSS score of 9.2 categorizes this flaw as critical, and although EPSS data is unavailable, the lack of authentication requirement and public Internet exposure make it highly exploitable. Attackers can trigger the denial of service by sending a simple HTTP request to /internalRestart from any network location. The vulnerability does not provide privilege escalation or confidentiality compromise, but the ability to bring down a key service may have significant business impact. The condition of this flaw is not yet listed in CISA KEV, but its severity warrants immediate attention.

Generated by OpenCVE AI on August 7, 2026 at 11:22 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest version of TeamDavid provided by Tobit Laboratories AG that removes or secures the /internalRestart endpoint.
  • If a vendor patch is not immediately available, configure network firewalls or reverse proxies to block all external access to the /internalRestart endpoint and only allow internal network traffic with proper authentication.
  • Monitor application logs for requests to /internalRestart and alert on repeated or unauthorized access attempts.
  • As an interim workaround, remove or rename the /internalRestart route from the deployment configuration to prevent accidental hits until a formal fix is deployed.

Generated by OpenCVE AI on August 7, 2026 at 11:22 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 07 Aug 2026 11:45:00 +0000

Type Values Removed Values Added
First Time appeared Tobit Laboratories Ag
Tobit Laboratories Ag teamdavid
Vendors & Products Tobit Laboratories Ag
Tobit Laboratories Ag teamdavid

Fri, 07 Aug 2026 10:15:00 +0000

Type Values Removed Values Added
Description Tobit Laboratories AG TeamDavid's Webbox application exposes a functionality that allows the server to be shut down when a specific endpoint (/internalRestart) is accessed. This endpoint is accessible to unauthenticated users over the public Internet. Instead of “restarting”, the server shuts completely down. As a result, a remote attacker can trigger a persistent denial of service by shutting down the web server without requiring authentication. Recovery requires manual administrator intervention to restart the service. This issue affects TeamDavid through Rollout 524.
Title TeamDavid: Denial of Service via endpoint 'internalRestart'
Weaknesses CWE-284
References
Metrics cvssV4_0

{'score': 9.2, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H'}


Subscriptions

Tobit Laboratories Ag Teamdavid
cve-icon MITRE

Status: PUBLISHED

Assigner: NCSC.ch

Published:

Updated: 2026-08-07T09:47:34.613Z

Reserved: 2026-06-12T09:32:46.514Z

Link: CVE-2026-54213

cve-icon Vulnrichment

No data.

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-07T11:30:03Z

Weaknesses