CVE-2026-68953

The affected products are vulnerable to an authentication bypass that allows unauthenticated remote attackers to disclose sensitive device information, including administrator credentials in plaintext, by sending crafted HTTP(S) requests.

  • Published Sep 15, 2026
  • CVSS 7.1 high
  • 0.6% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-68953 at the National Vulnerability Database