Vulnerability Description
The Mennekes Amtron series (firmware versions ≤ 5.22.3) is vulnerable to an authentication bypass. An unauthenticated remote attacker can change the password of the user account via a crafted POST request to the /operator/operator endpoint.
Related Weaknesses (CWE)
References
- https://cyberdanube.com/security-research/multiple-vulnerabilities-in-mennekes-a
- https://cyberdanube.com/security-research/multiple-vulnerabilities-in-mennekes-a
FAQ
What is CVE-2026-8979?
CVE-2026-8979 is a documented vulnerability. The Mennekes Amtron series (firmware versions ≤ 5.22.3) is vulnerable to an authentication bypass. An unauthenticated remote attacker can change the password of the user account via a crafted POST req...
How severe is CVE-2026-8979?
CVSS scoring is not yet available for CVE-2026-8979. Check NVD for updates.
Is there a patch for CVE-2026-8979?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.