CVE-2026-22094: Evbee DC 80

Critical severity, CVSS 9.3. EPSS: 0.2% chance of exploitation in the next 30 days.

The firmware for the EVbee DC-80 has a weak hardcoded root password, which allows attackers to login as root using the SSH daemon that is exposed to the network.

Affected products

  • Evbee DC 80: affected versions not specified

Published 2026-09-29. Last modified 2026-09-30.