{"id":"CVE-2026-73819","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-73819","summary":"The affected Ebyte \n\nproduct's vendor configuration utility permits access to administrative \nfunctions without verifying the operator's identity under certain \ncredential conditions.…","details":"The affected Ebyte \n\nproduct's vendor configuration utility permits access to administrative \nfunctions without verifying the operator's identity under certain \ncredential conditions. An unauthenticated attacker on the adjacent \nnetwork could modify critical settings or change access credentials, \npotentially preventing legitimate administrators from managing the \ndevice.","published":"2026-08-31T15:28:32.047Z","modified":"2026-08-31T15:35:42.467Z","cvss":{"score":9.8,"severity":"CRITICAL","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"},"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[],"fix":null,"references":[{"type":"WEB","url":"https://www.cisa.gov/news-events/ics-advisories/icsa-26-237-06"},{"type":"WEB","url":"https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-237-06.json"}],"provenance":{"sources":["OSV.dev","NVD","FIRST.org (EPSS)"],"lastVerified":"2026-08-31T15:35:42.467Z"}}