Project Subscriptions
No data.
No advisories yet.
Solution
Red Lion controls recommends the following upgrades for the N-Tron 700 Series: * Upgrade to firmware version 3.11.1 or greater * Configure or disable the SNMP communities * Disable access to the web GUI The upgrade procedure document can be viewed here https://www.hms-networks.com/ . The advisory issued by HMS Networks regarding these vulnerabilities can be viewed here https://www.hms-networks.com/cybersecurity .
Workaround
No workaround given by the vendor.
Fri, 09 Oct 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Usernames and passwords, including the default factory credentials, are stored in plaintext within the configuration file. With administrator rights, the configuration file can be viewed through the CLI or they can be exported from the device through a TFTP transfer from the web interface. A TFTP transfer can be initiated through SNMP which does not require authentication. | |
| Title | Red Lion Controls N-Tron 700 Series Insufficiently Protected Credentials | |
| Weaknesses | CWE-522 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-10-09T14:30:47.942Z
Reserved: 2026-04-08T19:28:49.400Z
Link: CVE-2026-39460
No data.
Status : Received
Published: 2026-10-09T15:17:14.660
Modified: 2026-10-09T15:17:14.660
Link: CVE-2026-39460
No data.
OpenCVE Enrichment
Updated: 2026-10-09T15:30:08Z