← Back to overview

CVE-2026-76133 affects an Ebyte product that uses a deprecated hashing algorithm in an authentication-related operation. The vulnerability stems from weak cryptographic construction that reduces the assurance provided by the authentication mechanism. Under conditions where an attacker can manipulate or predict the authentication exchange, unauthorized access may be facilitated. The advisory is referenced by CISA as an ICS advisory (icsa-26-237-06), indicating this is an operational technology (OT) or industrial control system (ICS) product. The use of deprecated hashing algorithms in authentication contexts is a well-known weakness that can be exploited through techniques such as hash collision or pre-image attacks. This vulnerability poses a risk to systems relying on the affected Ebyte product for secure authentication. Remediation would typically involve updating to a modern, secure hashing algorithm.

Affected products

  • Ebyte product

Related CVE's

  • CVE-2026-76133

Categories

  • Critical Infrastructure
  • Identity & Access
  • Mobile & IoT