Mennekes Amtron vulnerabilities
2 known vulnerabilities affecting mennekes/amtron.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2
Vulnerabilities
Page 1 of 1
CVE-2026-8979P2CRITICALCVSS 9.3≤ 5.22.32026-05-28
CVE-2026-8979 [CRITICAL] CWE-287 CVE-2026-8979: The Mennekes Amtron series (firmware versions ≤ 5.22.3) is vulnerable to an authentication bypass. A
The Mennekes Amtron series (firmware versions ≤ 5.22.3) is vulnerable to an authentication bypass. An unauthenticated remote attacker can change the password of the user account via a crafted POST request to the /operator/operator endpoint.
nvd
CVE-2026-8980P3CRITICALCVSS 9.3≤ 5.22.32026-05-28
CVE-2026-8980 [CRITICAL] CWE-269 CVE-2026-8980: The Mennekes Amtron series (firmware versions ≤ 5.22.3) is vulnerable to privilege escalation. An au
The Mennekes Amtron series (firmware versions ≤ 5.22.3) is vulnerable to privilege escalation. An authenticated low-privileged user can change the passwords of the admin (operator) and manufacturer accounts via crafted POST requests.
nvd