Home
HIGH: 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NDefault status
unaffected
1.0.0
affected
Default status
unaffected
1.1.0
affected
Description
An unsecured configuration interface on affected devices allows unauthenticated remote attackers to access sensitive information, including hashed credentials and access codes.
Problem types
CWE-306 Missing Authentication for Critical Function
Product status
1.0.0
1.1.0
Credits
Product Security Unit at VEGA Grieshaber KG
References
certvde.com/en/advisories/VDE-2026-016
vega.csaf-tp.certvde.com/...saf/white/2026/vde-2026-016.json