HackerFeeds
All CVEs

CVE-2026-73125

CRITICAL9.8

Published 2026-08-28 · Source ics-cert@hq.dhs.gov

Description

Ebyte device web management interface does not consistently enforce authentication before granting access to administrative functionality. An unauthenticated remote attacker could access sensitive configuration information, modify device settings, or disrupt availability.

CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CWE-306
View on NVD