Aller au contenu

Fiche vulnérabilité

CVE-2026-94493 : vulnérabilité critique (CVSS 10.0)

Description

A vulnerability was detected in Gigatech PDV5701 1.0.31_240305_112640. This issue affects some unknown processing of the file /index.html of the component WebSocket Service. The manipulation results in missing authentication. The attack can be launched remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

En bref

Sévérité
Critique (CVSS 10.0)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
22 sept. 2026
Dernière mise à jour
22 sept. 2026

Références

Rechercher une autre vulnérabilité dans la base CVE