CVE-2026-27868: PUBLICATION OF SENSITIVE INFORMATION ON REGESTA SMART HD-PLC OF TELDAT
An attacker with access via network to the Regesta Smart HD-PLC of the provider Teldat (in this case, NO registration action is required) who has the vulnerable software could obtain privilege information by using the command Version via the path: /upgrade/query.php?cmd=p+3&3Bversion resulting in a information disclosure. This issue affects Regesta Smart HD-PLC - TLDPH16D2: 11.02.05.10.02.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Regesta Smart HD-PLC (Teldat) TLDPH16D2to a version that resolves this vulnerability.Fixed in 11.02.05.10.02 - Upgrade
Upgrade
Regesta Smart HD-PLC (Teldat) TLDPH16D2to a version that resolves this vulnerability.Fixed in 11.02.06.00.02
Event History
Frequently Asked Questions
What is the severity of CVE-2026-27868?
CVE-2026-27868 has a medium severity rating of 6.9.
What type of vulnerability is CVE-2026-27868?
CVE-2026-27868 involves the publication of sensitive information due to improper access controls.
How can attackers exploit CVE-2026-27868?
Attackers can exploit CVE-2026-27868 by accessing the Regesta Smart HD-PLC over the network and issuing specific commands to retrieve sensitive information.
What are the potential impacts of CVE-2026-27868?
CVE-2026-27868 can lead to unauthorized disclosure of sensitive information, which may compromise the confidentiality of data.
How do I fix CVE-2026-27868?
To address CVE-2026-27868, apply any security patches provided by Teldat for the Regesta Smart HD-PLC software.