CVE-2026-8173

The web GUI of affected Murrelektronik Xelity switches logs MAC addresses from the devices MAC address table when an authenticated administrator uses the 'Copy learned MAC Addresses' function. Due to improper generation of error messages, an unauthenticated attacker with network access to the web interface can retrieve the logged MAC addresses via browser developer tools.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-24 07:16

Updated : 2026-09-03 16:57


NVD link : CVE-2026-8173

Mitre link : CVE-2026-8173

CVE.ORG link : CVE-2026-8173


JSON object : View

Products Affected

No product.

CWE
CWE-209

Generation of Error Message Containing Sensitive Information