All CVEs
Vulnerability intelligence

CVE-2026-73125

CWE-306

Ebyte device web management interface does not consistently enforce authentication before granting access to administrative functionality. An unauthenticated remote attacker could access sensitive configuration information, modify device settings, or disrupt availability.

CVSS Score
9.8
Critical
EPSS — Exploit Probability
0.5%
Riskier than 42% of all CVEs
Exploitation
Not in CISA KEV
No federal exploitation record
Remediation
unknown
Check vendor advisories
NVD entry PoC / advisory

1 article across 1 outlet · first covered Aug 28, 2026 · latest Aug 28, 2026

Coverage timeline