CVE-2026-77966
Ebyte NA111-M Missing Authorization
The affected Ebyte product does not provide separation between limited and administrative management functions. A low privileged authenticated attacker could access security sensitive configuration functions and modify settings that affect the confidentiality, integrity, or availability of the device.
Coverage 1 source
-
2026-08-27
CISA Cybersecurity Advisories
critical
Ebyte NA111-M
Multiple vulnerabilities in Ebyte NA111-M could allow full device compromise.
Mentioned with
CVE-2026-69658 CVE-2026-71187 CVE-2026-73125 CVE-2026-76133 CVE-2026-76179 CVE-2026-76940 CVE-2026-77975 CVE-2026-77977
Also covered
- CVE-2026-86950 Apple iOS and iPadOS
- CVE-2023-6548 Cloud Software Group NetScaler ADC
- CVE-2023-25608 Fortinet FortiAP-W2
- CVE-2026-88772 Memory overflow vulnerability leading to Remote Code Execution or Denial of Service
- CVE-2026-88771 A remote code execution vulnerability exists due to improper input validation, which can allow an unauthenticated attacker to execute arbitrary commands