CVE-2026-22909
- EPSS 0.08%
- Veröffentlicht 15.01.2026 13:16:05
- Zuletzt bearbeitet 23.01.2026 15:46:11
Certain system functions may be accessed without proper authorization, allowing attackers to start, stop, or delete installed applications, potentially disrupting system operations.
CVE-2026-22910
- EPSS 0.05%
- Veröffentlicht 15.01.2026 13:16:05
- Zuletzt bearbeitet 23.01.2026 15:45:28
The device is deployed with weak and publicly known default passwords for certain hidden user levels, increasing the risk of unauthorized access. This represents a high risk to the integrity of the system.
CVE-2026-22911
- EPSS 0.07%
- Veröffentlicht 15.01.2026 13:16:05
- Zuletzt bearbeitet 23.01.2026 15:35:59
Firmware update files may expose password hashes for system accounts, which could allow a remote attacker to recover credentials and gain unauthorized access to the device.
CVE-2026-22912
- EPSS 0.08%
- Veröffentlicht 15.01.2026 13:16:05
- Zuletzt bearbeitet 23.01.2026 15:33:27
Improper validation of a login parameter may allow attackers to redirect users to malicious websites after authentication. This can lead to various risk including stealing credentials from unsuspecting users.