AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-18368

MEDIUM · CVSS 6 EPSS 0.17%

Source: NVD + CISA KEV + EPSS · Published 2026-08-13 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

Teltonika Networks RUTOS devices are vulnerable due to improper handling of Modbus TCP request data in the modbusgwd service, which can be exploited by a remote, unauthenticated attacker. This flaw allows for a heap-based buffer overflow, potentially leading to a denial of service. Organizations using these devices should prioritize patching to mitigate the risk of service disruption.

CVE
CVE-2026-18368
Severity
MEDIUM
CVSS
6
EPSS
0.17%

Original NVD Description

In Teltonika Networks RUTOS devices, a vulnerability exists in modbusgwd due to improper handling of Modbus TCP request data. A remote, unauthenticated attacker with access to the affected service could trigger a heap-based buffer overflow, resulting in a denial of service.