SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-42933

CRITICAL · CVSS 10 EPSS 0.29%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

Versions 3.2.1a14 and earlier of Pronetiqs IntraVUE are vulnerable to an unintended proxy or intermediary flaw that enables attackers to exploit an active proxy, potentially bypassing operational technology (OT) segmentation. This critical vulnerability, rated with a CVSS score of 10.0, poses a significant risk to organizations relying on these versions for network security. Organizations utilizing IntraVUE should prioritize immediate remediation to mitigate the risk of unauthorized access and control over their OT environments.

CVE
CVE-2026-42933
Severity
CRITICAL
CVSS
10
EPSS
0.29%

Original NVD Description

Pronetiqs IntraVUE versions 3.2.1a14 and prior have an unintended proxy or intermediary vulnerability which could allow an attacker to use an active proxy, which would bypass OT segmentation.