MEDIUM
CVE-2026-68953
CVSS
6.5
Description
The affected products are vulnerable to an authentication bypass that allows unauthenticated remote attackers to disclose sensitive device information, including administrator credentials in plaintext, by sending crafted HTTP(S) requests.
Weakness (CWE)
CWE-306
Missing Authentication
EPSS Score
0.37%
Probability of exploitation in next 30 days
31.3th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.