CVE-2026-2417

A Missing Authentication for Critical Function vulnerability in Pharos Controls Mosaic Show Controller firmware version 2.15.3 could allow an unauthenticated attacker to bypass authentication and execute arbitrary commands with root privileges.
CVSS

No CVSS.

Configurations

No configuration.

History

17 Jun 2026, 10:30

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad de Falta de Autenticación para Función Crítica en el firmware del Pharos Controls Mosaic Show Controller versión 2.15.3 podría permitir a un atacante no autenticado eludir la autenticación y ejecutar comandos arbitrarios con privilegios de root.

24 Mar 2026, 19:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-24 19:16

Updated : 2026-06-17 10:30


NVD link : CVE-2026-2417

Mitre link : CVE-2026-2417

CVE.ORG link : CVE-2026-2417


JSON object : View

Products Affected

No product.

CWE
CWE-306

Missing Authentication for Critical Function