AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-16315

HIGH · CVSS 8.7 EPSS 0.26%

Source: NVD + CISA KEV + EPSS · Published 2026-08-06 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

OMICRON StationGuard versions prior to 4.10 are vulnerable to a cryptographic timing side-channel flaw in their backend authentication mechanism, enabling unauthenticated attackers to forge valid credentials. This vulnerability allows attackers to bypass authentication and authorization, potentially granting them full access to system configurations for unauthorized modifications. Organizations using affected versions should prioritize patching to mitigate the risk of credential forgery and unauthorized access.

CVE
CVE-2026-16315
Severity
HIGH
CVSS
8.7
EPSS
0.26%

Original NVD Description

OMICRON StationGuard before version 4.10 contains a cryptographic timing side-channel vulnerability in the backend authentication mechanism that may allow an unauthenticated attacker to forge valid authentication credentials, bypass authentication and authorization, and impersonate legitimate clients. An attacker can gain full access to the system configuration, allowing modification, reset, or unauthorized alteration of system parameters.