Instituto Nacional de ciberseguridad. Sección Incibe
Instituto Nacional de Ciberseguridad. Sección INCIBE-CERT

CVE-2026-15141

Gravedad CVSS v4.0:
MEDIA
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
12/08/2026
Última modificación:
12/08/2026

Descripción

*** Pendiente de traducción *** The web<br /> interface of the affected<br /> device relies on the HTTP referrer header as part of<br /> request validation.  Requests containing empty Referer value, or omitting<br /> the Referer header entirely, may be accepted and processed due to insufficient<br /> validation logic.<br /> <br /> <br /> <br /> <br /> <br /> Successful exploitation may allow an adjacent attacker with access to the web management<br /> interface to obtain device configuration details and other sensitive<br /> information.