AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-59693

MEDIUM · CVSS 4.3 EPSS 0.16% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

Desigo DXR2, PXC3, PXC4, PXC5, and PXC7 devices running versions prior to specified updates are vulnerable to a denial-of-service (DoS) attack. An attacker can exploit this vulnerability by sending a malformed BACnet packet, which results in the device becoming unresponsive to BACnet queries, necessitating a reset or reboot for recovery. Organizations using these devices should prioritize patching to mitigate potential disruptions in service.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-59693
Severity
MEDIUM
CVSS
4.3
EPSS
0.16%

Original NVD Description

A vulnerability has been identified in Desigo DXR2 (All versions < V01.21.233.16-7862), Desigo PXC3 (All versions < V01.21.233.16-7862), Desigo PXC4 (All versions < V02.21.194.36-2715), Desigo PXC5.E003 (All versions < V02.21.194.36-2715), Desigo PXC5.E24 (All versions < V02.21.194.36-2715), Desigo PXC7 (All versions < V02.21.194.36-2715). The affected devices are vulnerable to a denial-of-service (DoS) vulnerability. An attacker can exploit this issue by sending a malformed BACnet packet, causing the device to stop responding to BACnet queries. Recovery requires a device reset or reboot to restore normal functionality.