LIVE · cybersecurity feed
Live wire
cve recordcritical

CVE-2026-76179

Published
CVSS9.8
Severitycritical
WeaknessCWE-598
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Description

An improper protection of authentication tokens vulnerability exists in certain Ebyte gateway products. Authentication tokens used by the web management interface are insufficiently protected during client-side session handling, which may allow an attacker with access to exposed session information to obtain and reuse a valid token. Successful exploitation could allow an attacker to impersonate an authenticated user and gain unauthorized access to device management functionality.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-76179

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-76179.