LIVE · cybersecurity feed
Live wire
cve recordcritical

CVE-2026-73125

Published
CVSS9.8
Severitycritical
WeaknessCWE-306
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Description

Ebyte device web management interface does not consistently enforce authentication before granting access to administrative functionality. An unauthenticated remote attacker could access sensitive configuration information, modify device settings, or disrupt availability.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-73125

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-73125.