CVE-2026-103548: Itron Mv-90 XI

Medium severity, CVSS 5.3. EPSS: 0.1% chance of exploitation in the next 30 days.

Improperly stored passwords in the config file in Itron MV-90 xi 3.0 allows attackers to decode the passwords and password histories to gain access to the MV-90 application as any user.

Affected products

  • Itron Mv-90 XI: version 3.0 only

Published 2026-09-30. Last modified 2026-10-01.