CVE-2026-82763: Medium severity Contec FX5000 series vulnerability
Published Sep 14, 2026
·Updated
Cross-site scripting vulnerability exists in Contec FX5000 series, FX4000 series, and FX3000 series. If this vulnerability is exploited, an arbitrary script may be executed on a logged-in user's web browser.
Affected Software
3 affected components
Contec FX5000 series
Contec FX4000 series
Contec FX3000 series
Event History
Sep 14, 2026
CVE Published
via MITRE·06:44 AM
Data Sourced
via MITRE·06:44 AM
DescriptionSeverity
Frequently Asked Questions
1
Who is exposed to this issue?
Logged-in users of the web interface on affected Contec FX5000, FX4000, and FX3000 series devices may have arbitrary scripts executed in their browsers.
2
What does an attacker need to exploit it?
The CVSS vector indicates network access, low attack complexity, low privileges, and user interaction are required. Exploitation involves a logged-in user’s web browser.