An unsecured configuration interface on affected devices allows unauthenticated remote attackers to access sensitive information, including hashed credentials and access codes.
References
| Link | Resource |
|---|---|
| https://certvde.com/en/advisories/VDE-2026-016 | Third Party Advisory |
| https://vega.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-016.json | Third Party Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
11 May 2026, 14:58
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:vega:vegapuls_6x_firmware:1.0.0:*:*:*:*:*:*:* cpe:2.3:o:vega:vegapuls_6x_firmware:1.1.0:*:*:*:*:*:*:* cpe:2.3:h:vega:vegapuls_6x:-:*:*:*:*:*:*:* |
|
| First Time |
Vega
Vega vegapuls 6x Vega vegapuls 6x Firmware |
|
| References | () https://certvde.com/en/advisories/VDE-2026-016 - Third Party Advisory | |
| References | () https://vega.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-016.json - Third Party Advisory |
28 Apr 2026, 11:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-04-28 11:16
Updated : 2026-06-17 10:43
NVD link : CVE-2026-3323
Mitre link : CVE-2026-3323
CVE.ORG link : CVE-2026-3323
JSON object : View
Products Affected
vega
- vegapuls_6x
- vegapuls_6x_firmware
CWE
CWE-306
Missing Authentication for Critical Function
