CVE-2026-35075

An unauthenticated remote attacker can recover a default, hard coded password from a firmware image and thus gain full access to all affected devices.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:mbs-solutions:universal_gateway_firmware:*:*:*:*:*:*:*:*
OR cpe:2.3:h:mbs-solutions:double-a_profibus:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-a_x-link:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-x_can:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-x_dali:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-x_knx:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-x_lon:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-x_m-bus:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-x_profinet:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-x_x-link:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:single-a:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:single-x:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:triple-x_knx\+dali:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:triple-x_knx\+lon:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:triple-x_knx\+m-bus:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:triple-x_profinet\+dali:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:triple-x_profinet\+knx:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:triple-x_profinet\+lon:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:triple-x_profinet\+m-bus:-:*:*:*:*:*:*:*

History

08 Jun 2026, 17:17

Type Values Removed Values Added
First Time Mbs-solutions double-x Can
Mbs-solutions double-x M-bus
Mbs-solutions double-a X-link
Mbs-solutions single-x
Mbs-solutions triple-x Knx\+lon
Mbs-solutions triple-x Knx\+m-bus
Mbs-solutions
Mbs-solutions double-x X-link
Mbs-solutions double-x Lon
Mbs-solutions double-x Profinet
Mbs-solutions single-a
Mbs-solutions triple-x Profinet\+lon
Mbs-solutions triple-x Profinet\+knx
Mbs-solutions triple-x Profinet\+dali
Mbs-solutions triple-x Profinet\+m-bus
Mbs-solutions double-a Profibus
Mbs-solutions double-x Dali
Mbs-solutions double-x Knx
Mbs-solutions universal Gateway Firmware
Mbs-solutions triple-x Knx\+dali
CPE cpe:2.3:h:mbs-solutions:double-x_x-link:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-x_knx:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-x_profinet:-:*:*:*:*:*:*:*
cpe:2.3:o:mbs-solutions:universal_gateway_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:triple-x_knx\+dali:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-a_profibus:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:triple-x_profinet\+knx:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:triple-x_knx\+lon:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:single-a:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-x_dali:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-x_m-bus:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:single-x:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:triple-x_profinet\+m-bus:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:triple-x_profinet\+dali:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-x_can:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-a_x-link:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:triple-x_profinet\+lon:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:double-x_lon:-:*:*:*:*:*:*:*
cpe:2.3:h:mbs-solutions:triple-x_knx\+m-bus:-:*:*:*:*:*:*:*
References () https://www.certvde.com/en/advisories/VDE-2026-039/ - () https://www.certvde.com/en/advisories/VDE-2026-039/ - Vendor Advisory

03 Jun 2026, 13:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-03 13:16

Updated : 2026-06-08 17:17


NVD link : CVE-2026-35075

Mitre link : CVE-2026-35075

CVE.ORG link : CVE-2026-35075


JSON object : View

Products Affected

mbs-solutions

  • double-a_profibus
  • single-a
  • double-x_knx
  • double-x_m-bus
  • double-x_lon
  • triple-x_profinet\+lon
  • double-x_profinet
  • double-a_x-link
  • double-x_dali
  • triple-x_profinet\+m-bus
  • single-x
  • triple-x_profinet\+dali
  • triple-x_knx\+dali
  • triple-x_profinet\+knx
  • universal_gateway_firmware
  • triple-x_knx\+lon
  • triple-x_knx\+m-bus
  • double-x_x-link
  • double-x_can
CWE
CWE-1393

Use of Default Password