AllCyberNews

CVE-2026-77975

Ebyte NA111-M Cleartext Storage of Sensitive Information

CVSS 7.1 high · Ebyte Ebyte NE2-D11 Firmware · published 2026-08-31

The affected Ebyte product exports administrative credentials and other sensitive configuration information without adequate protection. An unauthenticated attacker on the adjacent network who can obtain an exported configuration file could recover valid credentials and use them to access the device or similarly configured systems.

Coverage 1 source

  1. 2026-08-27 CISA Cybersecurity Advisories critical Ebyte NA111-M

    Multiple vulnerabilities in Ebyte NA111-M could allow full device compromise.

Mentioned with

CVE-2026-69658 CVE-2026-71187 CVE-2026-73125 CVE-2026-76133 CVE-2026-76179 CVE-2026-76940 CVE-2026-77966 CVE-2026-77977

Also covered