Unauthorized Access Vulnerability in Ebyte Management Functions
CVE-2026-77966
8.7HIGH
What is CVE-2026-77966?
The Ebyte Management Systems exhibit a flaw where there is no clear separation between standard user and administrative functions. This inadequacy allows attackers with low-level authenticated access to manipulate crucial configuration settings. Such modifications could impair the confidentiality, integrity, and availability of the device, posing a significant risk to security.
Affected Version(s)
Ebyte NA111-M Firmware 9013-2-17
References
CVSS V4
Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Jithin Nambiar reported this vulnerability to CISA.
