CVE-2026-82792: Medium severity Contec CAN 2.0B Communication Wireless LAN / USB Converter Unit vulnerability
Published Sep 14, 2026
·Updated
Cross-site scripting vulnerability exists in Contec CAN 2.0B Communication Wireless LAN / USB Converter Unit. If this vulnerability is exploited, an arbitrary script may be executed on a logged-in user's web browser.
Affected Software
1 affected component
Contec CAN 2.0B Communication Wireless LAN / USB Converter Unit
Event History
Sep 14, 2026
CVE Published
via MITRE·06:45 AM
Data Sourced
via MITRE·06:45 AM
DescriptionSeverity
Frequently Asked Questions
1
What conditions are required for exploitation?
The CVSS vector indicates adjacent-network access, low attack complexity, no privileges, and user interaction are required. Exploitation targets a user who is logged in to the unit's web interface.
2
What is the likely impact on a successful exploit?
An attacker may cause arbitrary script to run in the logged-in user's browser. The CVSS vector rates confidentiality and integrity impact as low, with no availability impact.