{"id":"CVE-2026-77975","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-77975","summary":"The affected Ebyte \n\nproduct exports administrative credentials and other \nsensitive configuration information without adequate protection. An \nunauthenticated attacker on the adjacent…","details":"The affected Ebyte \n\nproduct exports administrative credentials and other \nsensitive configuration information without adequate protection. An \nunauthenticated attacker on the adjacent network who can obtain an \nexported configuration file could recover valid credentials and use them\n to access the device or similarly configured systems.","published":"2026-08-31T16:19:13.190","modified":"2026-08-31T16:19:13.190","cvss":{"score":6.5,"severity":"MEDIUM","vector":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"},"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[],"fix":null,"references":[{"type":"WEB","url":"https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-237-06.json"},{"type":"WEB","url":"https://www.cisa.gov/news-events/ics-advisories/icsa-26-237-06"}],"provenance":{"sources":["OSV.dev","NVD","FIRST.org (EPSS)"],"lastVerified":"2026-08-31T16:19:13.190"}}