CVE-2026-76133CWE-327

CVE-2026-76133

Critical · published August 31, 2026

CVSS v3.1
9.8
EPSS
0%
Percentile
33.0
In the wild
Unconfirmed
What it is

The affected Ebyte

product

uses a deprecated hashing algorithm in an authentication-related

operation. Under conditions where an attacker can manipulate or predict

the authentication exchange, the weak construction may reduce the

assurance provided by the authentication mechanism and facilitate

unauthorized access.

The record
Technical detail
CVSS v3.1
9.8 · CRITICAL
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v4.0
9.3 · CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
EPSS
0.00397 · 33.0th percentile
Weakness
CWE-327 · Use of a Broken or Risky Cryptographic Algorithm
Published
2026-08-31T20:19Z
References (2)
EPSS history
Timeline
  • 02 SEP 03:39Z
    EPSS moved — → 0%
    epss
  • 31 AUG 15:30Z
    Ebyte NA111-M Use of a Broken or Risky Cryptographic Algorithm
    cvelistv5