CVE-2018-20380: Ubeeinteractive Ambit DDW2600 Firmware
Critical severity, CVSS 9.8. EPSS: 1.6% chance of exploitation in the next 30 days.
Ambit DDW2600 5.100.1009, DDW2602 5.105.1003, T60C926 4.64.1012, and U10C019 5.66.1026 devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.3.6.1.4.1.4491.2.4.1.1.6.1.2.0 SNMP requests.
Affected products
- Ubeeinteractive Ambit DDW2600 Firmware: version 5.100.1009 only
- Ubeeinteractive Ambit DDW2602 Firmware: version 5.105.1003 only
- Ubeeinteractive Ambit t60c926 Firmware: version 4.64.1012 only
- Ubeeinteractive Ambit u10c019 Firmware: version 5.66.1026 only
Published 2018-12-23. Last modified 2026-06-17.