CVE-2026-79390: Trueview TI8161 vulnerability
Trueview TI8161 6.0.23.4 is vulnerable to information disclosure due to the transmission of MQTT communications in plaintext over TCP port 1883. An unauthenticated attacker with access to the same network segment can intercept MQTT traffic and obtain sensitive device information and operational data, including device identifiers, message metadata, and control-related information.
Affected Software
Event History
Frequently Asked Questions
Who can exploit this issue?
An unauthenticated attacker must have access to the same network segment as the affected device so they can intercept its MQTT traffic.
What information could be exposed?
Plaintext MQTT traffic may reveal sensitive device information and operational data, including device identifiers, message metadata, and control-related information.
How can I determine whether a device is affected?
Check whether the device is a Trueview TI8161 running version 6.0.23.4 and whether it transmits MQTT traffic unencrypted over TCP port 1883.