SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-16876

CRITICAL · CVSS 9.3 EPSS 0.33%

Source: NVD + CISA KEV + EPSS · Published 2026-09-07 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

An authentication bypass vulnerability in the WebGUI of Series UNIVERGE IX-R/IX-V allows attackers to circumvent authentication mechanisms and execute arbitrary CLI commands by manipulating WebGUI messages sent over the internet. This critical flaw poses a significant risk to the integrity and security of affected devices, making it imperative for organizations using these systems to prioritize immediate remediation efforts. Network administrators and security teams should assess their exposure to this vulnerability and implement necessary patches or mitigations without delay.

CVE
CVE-2026-16876
Severity
CRITICAL
CVSS
9.3
EPSS
0.33%

Original NVD Description

An authentication bypass vulnerability exists in the WebGUI of Series UNIVERGE IX-R/IX-V. A user could bypass authentication and execute arbitrary CLI commands by tampering with WebGUI messages and sending them to the device via internet.