GHSA-rrpm-rq88-pwc9HighCVSS 8.8

The Ebyte device does not adequately verify the origin or authenticity of requests submitted to...

Published
August 28, 2026
Last Modified
August 28, 2026

🔗 CVE IDs covered (1)

📋 Description

The Ebyte device does not adequately verify the origin or authenticity of requests submitted to the web management interface. An unauthenticated remote attacker could persuade an authenticated administrator to visit a crafted page, causing unauthorized configuration changes or a disruption of device availability.

🔗 References (4)