B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

[High] CVE-2026-49186 – The local MQTT broker does not enforce topic-level Access Control Lists (ACLs). ...

High CVE-2026-49186 The local MQTT broker does not enforce topic-level Access Control Lists (ACLs). This allows any client to subscribe using wildcard characters (# or +) to enumerate hidden network devices or publish rogue control commands. CVSS: 8.6 · CWE: CWE-287 View on NVD

Original-Artikel öffnen Zurück zur Übersicht