216.73.217.22

CVE-2026-26341

· Published 24/02/2026 20:27 · Modified 24/02/2026 21:52

Labels: CVE-2026-26341 2026-02-24CVE-2026-26341CWE-1392[email protected]

Essential information

Published
24/02/2026 20:27
Modified
24/02/2026 21:52
Author
Creator
CVSS
9.3 CRITICAL (v3) 9.3 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Tattile Smart+, Vega, and Basic device families firmware versions 1.181.5 and prior ship with default credentials that are not forced to be changed during installation or commissioning. An attacker who can reach the management interface can authenticate using the default credentials and gain administrative access, enabling unauthorized access to device configuration and data.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
tattile / smart+ cpe:2.3:a:tattile:smart+:1.181.5:*:*:*:*:*:*:*
tattile / vega cpe:2.3:a:tattile:vega:1.181.5:*:*:*:*:*:*:*
tattile / basic cpe:2.3:a:tattile:basic:1.181.5:*:*:*:*:*:*:*

References