OCTOBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-80276

HIGH · CVSS 7.5 EPSS 0.37%

Source: NVD + CISA KEV + EPSS · Published 2026-10-01 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

The Comelit Multi-User Gateway for VIP System (model 1456B) firmware versions 2.9.1 and 2.10.0 contains a high-severity vulnerability that exposes an unauthenticated network-accessible management interface, allowing remote attackers to access sensitive configuration data, including the Remote Configuration Password, in cleartext. Organizations using this gateway should prioritize patching or securing their devices to mitigate the risk of unauthorized access and potential exploitation.

CVE
CVE-2026-80276
Severity
HIGH
CVSS
7.5
EPSS
0.37%

Original NVD Description

Comelit Multi-User Gateway for VIP System (model 1456B) firmware versions 2.9.1 and 2.10.0 expose a network-accessible management interface that does not require authentication. Through this interface, sensitive device configuration data - including the Remote Configuration Password - can be read in cleartext by a remote, unauthenticated attacker.