SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-33391

MEDIUM · CVSS 5.4 EPSS 0.31%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

An access control vulnerability in the Smart Polling configuration allows authenticated users with limited privileges to bypass intended restrictions on the web management interface. This exploitation can lead to unauthorized modifications of the Smart Polling discovery configuration, potentially disrupting asset visibility within the monitored network. Organizations utilizing this functionality should prioritize remediation to prevent potential disruptions and unauthorized access.

CVE
CVE-2026-33391
Severity
MEDIUM
CVSS
5.4
EPSS
0.31%

Original NVD Description

An access control vulnerability was discovered in the Smart Polling configuration functionality due to insufficient validation of user privileges. An authenticated user with limited privileges can remotely bypass the intended access control of the web management interface and modify the Smart Polling discovery configuration. This allows the attacker to disrupt the visibility of assets in the monitored network.