216.73.217.22

CVE-2026-49195

· Published 29/05/2026 09:16 · Modified 29/05/2026 14:46

Labels: CVE-2026-49195 2026-05-298fc372e3-d9c5-46e4-9410-38469745c639CVE-2026-49195CWE-306

Essential information

Published
29/05/2026 09:16
Modified
29/05/2026 14:46
Author
Creator
CVSS
8.7 HIGH (v3) 8.7 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Unauthenticated Debug Service. The /sbin/mtk_dut binary is exposed on TCP port 9000 without authentication, allowing any LAN-based attacker to execute arbitrary UCC commands.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
8fc372e3-d9c5-46e4-9410-38469745c639
NVD
View on NVD

Affected products (CPE)

ProductCPE
mtk dut / mtk dut cpe:2.3:a:mtk_dut:mtk_dut:*:*:*:*:*:*:*:*

References