CVE-2023-49899: X-Rite Ma-t6

Critical severity, CVSS 9.8. EPSS: 0.3% chance of exploitation in the next 30 days.

An unauthenticated remote attacker can execute any command on the affected device due to not correctly verifying the origin of a communication channel.

Affected products

  • X-Rite Ma-t6: before v2.33 (fixed in v2.33)

Published 2026-07-16. Last modified 2026-09-26.