The affected Ebyte
product exports administrative credentials and other
sensitive configuration information without adequate protection. An
unauthenticated attacker on the adjacent network who can obtain an
exported configuration file could recover valid credentials and use them
to access the device or similarly configured systems.
Metrics
Affected Vendors & Products
References
History
Mon, 31 Aug 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ebyte
Ebyte ebyte Ne2-d11 Firmware |
|
| Vendors & Products |
Ebyte
Ebyte ebyte Ne2-d11 Firmware |
Mon, 31 Aug 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The affected Ebyte product exports administrative credentials and other sensitive configuration information without adequate protection. An unauthenticated attacker on the adjacent network who can obtain an exported configuration file could recover valid credentials and use them to access the device or similarly configured systems. | |
| Title | Ebyte NA111-M Cleartext Storage of Sensitive Information | |
| Weaknesses | CWE-312 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: icscert
Published: 2026-08-31T15:26:08.482Z
Updated: 2026-08-31T15:39:13.452Z
Reserved: 2026-08-21T19:56:57.903Z
Link: CVE-2026-77975
No data.
Status : Deferred
Published: 2026-08-31T16:19:13.190
Modified: 2026-08-31T19:18:40.503
Link: CVE-2026-77975
No data.