CVE-2025-13510: Iskra Ihub And Ihub Lite
Critical severity, CVSS 9.3. EPSS: 0.6% chance of exploitation in the next 30 days.
The Iskra iHUB and iHUB Lite smart metering gateway exposes its web management interface without requiring authentication, allowing unauthenticated users to access and modify critical device settings.
Affected products
- Iskra Ihub And Ihub Lite: any version
Published 2025-12-02. Last modified 2026-06-17.