← Back to overview

CVE-2026-76943 affects the Xiiaozet LK100Wt device, which contains an authentication weakness in an administrative service. The vulnerability allows attackers to bypass intended access controls and gain command execution capabilities. Successful exploitation enables unauthorized interaction with privileged functionality. The flaw may ultimately lead to complete device compromise. The vulnerability is documented in both the NVD and a CISA ICS advisory (icsa-26-239-01). It is classified as high severity. No patch or workaround details are provided in the article. The affected product appears to be an OT/ICS device based on the CISA CSAF file categorization. The advisory is jointly referenced by CISA and the NVD, indicating coordinated disclosure.

Affected products

  • Xiiaozet LK100Wt

Related CVE's

  • CVE-2026-76943

Categories

  • Critical Infrastructure
  • Identity & Access
  • Mobile & IoT
  • Zero-Day Vulnerabilities