CVE-2026-22543
EUVD-2026-141507.01.2026, 17:16
The credentials required to access the device's web server are sent in base64 within the HTTP headers. Since base64 is not considered a strong cipher, an attacker could intercept the web request handling the login and obtain the credentialsEnginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.
Common Weakness Enumeration
References