| CVE ID | CVSS Score | Severity | Description |
|---|---|---|---|
| CVE-2026-9718 | 4.9 | medium |
CVE-2026-9718. CWE-617 Reachable Assertion vulnerability exists that could allow an authenticated attacker to trigger a
denial-of-service condition, impacting system availability when a specially crafted request is sent to a
vulnerable network-exposed service.
|
| CVE-2026-9716 | 7.5 | high |
CVE-2026-9716. CWE-476 NULL Pointer Dereference vulnerability exists that could cause a denial-of-service condition,
rendering the device’s HMI and configuration functionality unavailable when malformed requests are received
over exposed network interfaces.
|
| CVE-2026-9717 | 7.2 | high |
CVE-2026-9717. CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability
exists that could allow unauthorized execution of commands with elevated privileges, impacting system
integrity, confidentiality, and availability when a privileged authenticated user interacts with a vulnerable
network-exposed service.
|