CVE-2026-25819

HMS Networks Ewon Flexy with firmware before 15.0s4, Cosy+ with firmware 22.xx before 22.1s6, and Cosy+ with firmware 23.xx before 23.0s3 allows unauthenticated attackers to cause a Denial of Service by using a specially crafted HTTP request that leads to a reboot of the device, provided they have access to the device's GUI.
Configurations

No configuration.

History

27 Apr 2026, 19:18

Type Values Removed Values Added
Summary
  • (es) HMS Networks Ewon Flexy con firmware anterior a 15.0s4, Cosy+ con firmware 22.xx anterior a 22.1s6, y Cosy+ con firmware 23.xx anterior a 23.0s3 permite a atacantes no autenticados causar una denegación de servicio mediante el uso de una solicitud HTTP especialmente diseƱada que provoca un reinicio del dispositivo, siempre que tengan acceso a la GUI del dispositivo.

13 Mar 2026, 19:54

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-13 19:54

Updated : 2026-04-27 19:18


NVD link : CVE-2026-25819

Mitre link : CVE-2026-25819

CVE.ORG link : CVE-2026-25819


JSON object : View

Products Affected

No product.

CWE
CWE-400

Uncontrolled Resource Consumption