A Missing Authentication for Critical Function vulnerability in Pharos Controls Mosaic Show Controller firmware version 2.15.3 could allow an unauthenticated attacker to bypass authentication and execute arbitrary commands with root privileges.
Metrics
Affected Vendors & Products
References
History
Wed, 25 Mar 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Pharos Controls
Pharos Controls mosaic Show Controller |
|
| Vendors & Products |
Pharos Controls
Pharos Controls mosaic Show Controller |
Tue, 24 Mar 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 24 Mar 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Missing Authentication for Critical Function vulnerability in Pharos Controls Mosaic Show Controller firmware version 2.15.3 could allow an unauthenticated attacker to bypass authentication and execute arbitrary commands with root privileges. | |
| Title | Missing Authentication for Critical Function in Pharos Controls Mosaic Show Controller | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: icscert
Published: 2026-03-24T18:06:32.303Z
Updated: 2026-03-24T18:38:05.206Z
Reserved: 2026-02-12T17:31:30.834Z
Link: CVE-2026-2417
Updated: 2026-03-24T18:38:02.468Z
Status : Received
Published: 2026-03-24T19:16:51.410
Modified: 2026-03-24T19:16:51.410
Link: CVE-2026-2417
No data.