Authentication Bypass Vulnerability in Taiko AG1000-01A SMS Alert Gateway
⚠️ CVE-Referenzen:
CVE-2026-9141
Taiko Network Communications Pte Ltd. - Ag1000-01a Sms Alert Gateway - CRITICAL - CVE-2026-9141.
The Taiko AG1000-01A SMS Alert Gateway, in versions 7.3 and 8, has a significant weakness within its embedded web configuration interface, allowing attackers to bypass authentication mechanisms. This vulnerability can be exploited by unauthenticated individuals who possess network access, enabling them to directly request critical internal resources such as index.zhtml, point.zhtml, and log.shtml. Exploiting this flaw provides unauthorized users with full administrative access to modify alarm routing, change device configurations, and potentially disrupt monitoring and control functions, highlighting a serious security risk that needs to be addressed.
Quelle: securityvulnerability.io