CVE-2026-78167
CRITICAL
NVD
CVSS Score
10
Severity
CRITICAL
Published
Aug 24, 2026
Vendor
unknown
Description
A weakness has been identified in EFM ipTIME T16000M 14.20.2. The impacted element is the function httpcon_check_session_url of the component Session Validation Handler. This manipulation causes improper authentication. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.