SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-73809

HIGH · CVSS 7.5 EPSS 0.17% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-28 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

Certain Ebyte gateway products are vulnerable due to a lack of transport-layer encryption in their web management interface, allowing sensitive information to be transmitted in cleartext. An attacker with network access could intercept authentication and session-related data, potentially leading to unauthorized access to device management features. Organizations using these devices should prioritize remediation to protect against data disclosure and unauthorized control.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit
GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-73809
Severity
HIGH
CVSS
7.5
EPSS
0.17%

Original NVD Description

A cleartext transmission of sensitive information vulnerability exists in certain Ebyte gateway products. The web management interface does not adequately protect sensitive communications using transport-layer encryption. An attacker with access to network traffic could intercept authentication or session-related information transmitted between a user and the affected device. Successful exploitation could result in disclosure of sensitive information and unauthorized access to device management functionality.