CVE-2026-73125: Ebyte NA111-M Firmware
Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.
Ebyte device web management interface does not consistently enforce authentication before granting access to administrative functionality. An unauthenticated remote attacker could access sensitive configuration information, modify device settings, or disrupt availability.
Affected products
- Ebyte Ebyte NA111-M Firmware: version 9013-2-17 only
Published 2026-08-28. Last modified 2026-08-31.