Weak Hashing Algorithm in Ebyte Authentication System
CVE-2026-76133

9.3CRITICAL

Key Information:

Vendor

Ebyte

Vendor
CVE Published:
31 August 2026

What is CVE-2026-76133?

Ebyte Authentication System utilizes a deprecated hashing algorithm for authentication-related processes. This vulnerability can be exploited under conditions where an attacker has the capability to manipulate or predict the authentication exchange, potentially allowing unauthorized access. The weak structure of the hashing mechanism undermines the integrity and effectiveness of the authentication, making it crucial for users to address this security concern promptly.

Affected Version(s)

Ebyte NA111-M Firmware 9013-2-17

References

CVSS V4

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Jithin Nambiar reported this vulnerability to CISA.
.