Affected devices do not properly restrict access to the web browser via the Control Panel when no corresponding security mechanisms are in place.
This could allow an unauthenticated attacker to gain unauthorized access to the web browser, potentially enabling the discovery of backdoors, performing unauthorized actions, or exploiting misconfigurations that may lead to further system compromise.
Metrics
Affected Vendors & Products
References
History
Tue, 12 May 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Unauthorized Web Browser Access via Control Panel without Authentication |
Tue, 12 May 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Affected devices do not properly restrict access to the web browser via the Control Panel when no corresponding security mechanisms are in place. This could allow an unauthenticated attacker to gain unauthorized access to the web browser, potentially enabling the discovery of backdoors, performing unauthorized actions, or exploiting misconfigurations that may lead to further system compromise. | |
| Weaknesses | CWE-1188 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: siemens
Published:
Updated: 2026-05-12T08:21:13.221Z
Reserved: 2026-02-23T10:07:00.530Z
Link: CVE-2026-27662
No data.
Status : Awaiting Analysis
Published: 2026-05-12T10:16:45.540
Modified: 2026-05-12T14:19:41.400
Link: CVE-2026-27662
No data.
OpenCVE Enrichment
Updated: 2026-05-12T11:00:07Z