CVE-2026-1410: Beetel 777VR1 UART missing authentication
A vulnerability was detected in Beetel 777VR1 up to 01.00.09/01.00.0955. Impacted is an unknown function of the component UART Interface. The manipulation results in missing authentication. An attack on the physical device is feasible. This attack is characterized by high complexity. The exploitability is considered difficult. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-1410?
CVE-2026-1410 has a high severity rating due to the missing authentication vulnerability in the UART interface.
How do I fix CVE-2026-1410?
To fix CVE-2026-1410, upgrade the Beetel 777VR1 firmware to the latest version beyond 01.00.09/01.00.09_55.
What devices are affected by CVE-2026-1410?
CVE-2026-1410 affects the Beetel 777VR1 devices up to and including version 01.00.09/01.00.09_55.
What is a potential risk of CVE-2026-1410?
The risk of CVE-2026-1410 includes unauthorized access and manipulation of the device through its UART interface.
Can CVE-2026-1410 be exploited remotely?
CVE-2026-1410 requires physical access to the device for exploitation, thus it cannot be exploited remotely.