Unauthorized Access Vulnerability in Ebyte Management Functions
CVE-2026-77966

8.7HIGH

Key Information:

Vendor

Ebyte

Vendor
CVE Published:
31 August 2026

What is CVE-2026-77966?

The Ebyte Management Systems exhibit a flaw where there is no clear separation between standard user and administrative functions. This inadequacy allows attackers with low-level authenticated access to manipulate crucial configuration settings. Such modifications could impair the confidentiality, integrity, and availability of the device, posing a significant risk to security.

Affected Version(s)

Ebyte NA111-M Firmware 9013-2-17

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Jithin Nambiar reported this vulnerability to CISA.
.