top of page
perceptive_background_267k.jpg

An unauthenticated remote attacker can post a malicious ID to the MQTT Broker results in the creation of a new configuration entry in the system configuration. …

Published:

29 juli 2026 om 22:00:00

Alert date:

30 juli 2026 om 15:06:28

Source:

nvd.nist.gov

Click to open the original link from this advisory

Mobile & IoT, Critical Infrastructure, Network Infrastructure

CVE-2026-44091 describes a vulnerability where an unauthenticated remote attacker can post a malicious ID to an MQTT Broker, resulting in the creation of a new configuration entry in the system configuration. This attack requires no authentication, making it accessible to any remote attacker. The vulnerability may lead to both integrity and availability loss within the affected system. The issue is documented by CERT VDE under advisory VDE-2026-008. MQTT (Message Queuing Telemetry Transport) is a lightweight protocol commonly used in IoT and industrial control systems, making this vulnerability particularly concerning for critical infrastructure environments. The lack of authentication controls on the broker's ID handling represents a significant security gap. Successful exploitation could allow attackers to manipulate system configurations and potentially disrupt operations.

Technical details

Mitigation steps:

Affected products:

MQTT Broker

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page