| CVE ID | CVSS Score | Severity | Description |
|---|---|---|---|
| CVE-2026-66887 | 9.6 | critical |
The affected products are missing authorization on state-changing CGIs and session checks are not performed.
|
| CVE-2026-66890 | 9.6 | critical |
The affected products use hard-coded credentials, which could allow remote access to files with root privileges where FTP is reachable.
|
| CVE-2026-68953 | 6.5 | medium |
The affected products are vulnerable to an authentication bypass that allows unauthenticated remote attackers to disclose sensitive device information, including administrator credentials in plaintext, by sending crafted HTTP(S) requests.
|
| CVE-2026-68950 | 8.8 | high |
The affected products use hard-coded credentials, which could allow an attacker to run the ftpd service as root, providing remote root file access where FTP is reachable.
|
| CVE-2026-68070 | 8.8 | high |
The affected products are missing authentication for a critical function, which could allow an attacker to run as root and pass received bytes directly to a system command.
|
| CVE-2026-66372 | 6.8 | medium |
The affected products use insufficiently random values, which allows web session tokens to be predictable, bounding token entropy to the seed space.
|