CVE-2026-28745: Red Lion Controls 700 Series

High severity, CVSS 7.5. EPSS: 0.2% chance of exploitation in the next 30 days.

Usernames and passwords, including the default credentials, are stored in the configuration file using weak encryption. If the default credentials are known by a malicious user, they could obtain other credentials on the system.

Affected products

Published 2026-10-09. Last modified 2026-10-09.