AUGUST 14, 2026
Live Feed
Back to database
Case File

CVE-2026-13196

HIGH · CVSS 7.3

Source: NVD + CISA KEV + EPSS · Published 2026-08-14 · Last synced 2026-08-14

CyberRota Analysis

AI-Generated

The vulnerability in KUNBUS piControl version 2.6.2 allows local authenticated attackers with device configuration access to exploit an out-of-bounds write condition, enabling them to overwrite adjacent kernel memory. This can lead to kernel memory corruption and potential denial of service. Organizations using this version of piControl should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-13196
Severity
HIGH
CVSS
7.3
EPSS
N/A

Original NVD Description

Nozomi Networks Labs identified a CWE-787: Out-of-bounds Write vulnerability in the process-image management functionality of KUNBUS piControl in version 2.6.2 that allows a local authenticated attacker with device configuration access to write attacker-controlled data outside the bounds of the process-image buffer and corrupt adjacent kernel memory, resulting in kernel memory corruption and denial of service, by supplying crafted device configuration data and crafted input through the piControl character device.