← nejvýznamnější zprávy · všechny zprávy

EPSS 0.00

Murrelektronik: Vulnerability in 'Copy learned MAC Addresses' function enables MAC Spoofing on Xelity Switches

[VDE-2026-061] An information disclosure vulnerability in the web GUI of Murrelektronik Xelity switches causes MAC addresses from the device's MAC address table to be written into a server-side log that is exposed via the device's web interface to unauthenticated users. The leak is triggered when an authenticated administrator invokes the 'Copy learned MAC Addresses' function, which causes a syslog error that inserts the affected MAC addresses into the log output. Once the error has been…

Číst originál na CERT@VDE →

CZ · EN/orig

Murrelektronik výroba a průmysl DE

tg: zranitelnost tp: průmyslové systémy

CVE v události 1

CVEhodnoceníKEVEPSS
CVE-2026-8173 5.3 3.1 · CERTVDE 5.3 4.0 · CERTVDE 0.00

Hodnocení z katalogů, všechna, se stupnicí CVSS a vydavatelem. Rozpad vektoru je na stránce CVE.