SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-6017

HIGH · CVSS 7.1 EPSS 0.16%

Source: NVD + CISA KEV + EPSS · Published 2026-08-24 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

KAON PG5298A and PG5298B routers are vulnerable due to a flaw in their firmware that allows unauthenticated users to access sensitive information, including administrative portal passwords, through a specific endpoint. This poses a significant risk of unauthorized access and potential exploitation of the routers. Network administrators and organizations using these router models should prioritize updating to firmware versions 3.0.82 and 4.0.82 to mitigate this vulnerability.

CVE
CVE-2026-6017
Severity
HIGH
CVSS
7.1
EPSS
0.16%

Original NVD Description

Firmware in KAON PG5298A and PG5298B routers allow an unauthenticated user to query a specific endpoint and acquire sensitive information such as a password to the administrative portal.   This vulnerability has been fixed in firmware version: 3.0.82 for PG5298A and 4.0.82 for PG5298B.