top of page
perceptive_background_267k.jpg

A cleartext transmission of sensitive information vulnerability exists
in certain Ebyte gateway products. The web management interface does not
adequately pro…

Published:

28 August 2026 at 00:00:00

Alert date:

28 August 2026 at 03:09:12

Source:

nvd.nist.gov

Click to open the original link from this advisory

Network Infrastructure, Critical Infrastructure, Mobile & IoT

A cleartext transmission of sensitive information vulnerability has been identified in certain Ebyte gateway products. The web management interface lacks adequate transport-layer encryption, exposing sensitive communications to interception. An attacker with access to network traffic can intercept authentication credentials or session tokens exchanged between users and the affected device. Successful exploitation could lead to unauthorized access to device management functionality and disclosure of sensitive information. The vulnerability is tracked as CVE-2026-73809 and has been reported via NVD and CISA ICS advisory ICSA-26-237-06. It affects OT/ICS gateway devices, making it particularly relevant to critical infrastructure environments. Mitigation likely involves enabling TLS/HTTPS on the web management interface or applying vendor-supplied patches.

Technical details

Mitigation steps:

Affected products:

Ebyte Gateway

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page