Description
An issue in Vanderbilt Industries, Acre Security SPC5300.000 Main Board v.3.14.1 allows a physically proximate attacker to cause a denial of service via Spoofed SYN packets.
Published: 2026-08-26
Score: n/a
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

An attacker who can physically approach the affected equipment can trigger a denial of service by sending forged SYN packets to the Vanderbilt Industries Acre Security SPC5300.000 Main Board v.3.14.1. The vulnerability allows the system to become unavailable, preventing legitimate traffic from being processed. This represents a classic network‐level denial of service exposure, classified under CWE‑770.

Affected Systems

The flaw resides in the Acre Security SPC5300.000 Main Board version 3.14.1 manufactured by Vanderbilt Industries. No other affected products or versions are listed.

Risk and Exploitability

The CVSS score is not supplied, and the EPSS score is unavailable, so the overall exploit likelihood cannot be quantified precisely. The vulnerability is not listed in the CISA KEV catalog. Because the issue requires the attacker to be physically close to the board, the attack vector is limited to local or secure network contexts. If an attacker can reach the board, they could rapidly exhaust resources, leading to a denial of service attack, but the absence of publicly known exploits suggests a moderate risk pending further discovery.

Generated by OpenCVE AI on August 26, 2026 at 22:38 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply any firmware or software update for the Acre Security SPC5300.000 Main Board that addresses the SYN packet handling issue.
  • Configure device or network firewalls to reject unsolicited SYN requests from unknown sources or to limit SYN rate (rate‑limit).
  • Restrict physical access to the board and use network segmentation to isolate it from untrusted networks.

Generated by OpenCVE AI on August 26, 2026 at 22:38 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 26 Aug 2026 23:00:00 +0000

Type Values Removed Values Added
Title Denial of Service via Spoofed SYN Packets in Acre Security SPC5300 Main Board
Weaknesses CWE-770

Wed, 26 Aug 2026 21:00:00 +0000

Type Values Removed Values Added
Description An issue in Vanderbilt Industries, Acre Security SPC5300.000 Main Board v.3.14.1 allows a physically proximate attacker to cause a denial of service via Spoofed SYN packets.
References

Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-08-26T20:40:10.659Z

Reserved: 2025-09-26T00:00:00.000Z

Link: CVE-2025-61478

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-26T21:16:37.703

Modified: 2026-08-26T21:16:37.703

Link: CVE-2025-61478

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-26T22:45:03Z

Weaknesses
  • CWE-770

    Allocation of Resources Without Limits or Throttling