Trueview T18161 S 6.0.23.4 contains an improper verification in MQTT command processing. An attacker with network access can replay or modify captured MQTT messages, including security-related nonce, timestamp, and signature fields, and the device accepts the modified messages and executes the associated commands.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-09-04 20:17
Updated : 2026-09-14 14:17
NVD link : CVE-2026-79389
Mitre link : CVE-2026-79389
CVE.ORG link : CVE-2026-79389
JSON object : View
Products Affected
No product.
CWE
CWE-347
Improper Verification of Cryptographic Signature
