Description
An attacker with access via network to the Regesta Smart HD-PLC of the provider Teldat (in this case, NO registration action is required) who has the vulnerable software could obtain privilege information by using the command Version via the path: /upgrade/query.php?cmd=p+3&3Bversion resulting in a information disclosure. This issue affects Regesta Smart HD-PLC - TLDPH16D2: 11.02.05.10.02.
Problem types
CWE-201 Insertion of sensitive information into sent data
Product status
11.02.05.10.02
11.02.06.00.02
Timeline
| 2026-02-20: | Vulnerability detection by the researchers |
| 2026-02-22: | Report from researchers to the CNA of HackRTU |
| 2026-02-25: | Report from HackRTU CNA to the provider |
| 2026-05-29: | New version published by the provider |
| 2026-06-17: | Vulnerabilities published by HackRTU's CNA |
Credits
Aarón Flecha Menéndez
Víctor Bello Cuevas
References
www.hackrtu.com/blog/CNA-HRTU-0002/
www.hackrtu.com/blog/CNA-CVE-2026-27868/
www.teldat.com/es/
support.teldat.com/...mart_nessum_series_installation(1).pdf
support.teldat.com/...lobal-support&none=true&language=en-US