Description
A low privileged remote attacker can perform privileged configuration changes reserved for the administrator level including permission management due to incorrect authorization.
Published: 2026-07-28
Score: 8.7 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability allows an attacker with limited remote privileges to change system configuration settings normally restricted to administrators, such as permission assignments. This results in a privilege escalation that compromises the integrity of device configuration and can enable further unauthorized actions. The weakness is an improper authorization flaw, identified as CWE‑863.

Affected Systems

Affected devices include the ads‑tec Industrial IT DVG series: DVG‑IRF1401, DVG‑IRF1421, DVG‑IRF3401, DVG‑IRF3421, DVG‑IRF3801, and DVG‑IRF3821. The firmware families IRF1000 and IRF3000 are mentioned as targets, but specific affected firmware versions are not listed in the advisory. Administrators should verify the model and firmware of their devices against the listed product identifiers.

Risk and Exploitability

The CVSS score of 8.7 indicates high severity, yet the EPSS score of less than 1% suggests that exploitation is currently rare. The advisory notes the flaw is exploitable by remote attackers with low privileges, thus likely via the configuration import interface. Because the issue is not listed in CISA KEV, there is no documented exploitation case, but the high impact makes timely remediation essential.

Generated by OpenCVE AI on August 3, 2026 at 15:21 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest firmware update from ads‑tec to all affected DVG‑IRF devices that contains the fix for the authorization flaw.
  • Restrict the configuration import capability to administrator accounts only, preventing low‑privileged users from invoking the process.
  • Enable comprehensive audit logging for configuration changes and conduct regular reviews to detect any unauthorized alterations.

Generated by OpenCVE AI on August 3, 2026 at 15:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 28 Jul 2026 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Ads-tec Industrial It
Ads-tec Industrial It dvg-irf1401
Ads-tec Industrial It dvg-irf1421
Ads-tec Industrial It dvg-irf3401
Ads-tec Industrial It dvg-irf3421
Ads-tec Industrial It dvg-irf3801
Ads-tec Industrial It dvg-irf3821
Vendors & Products Ads-tec Industrial It
Ads-tec Industrial It dvg-irf1401
Ads-tec Industrial It dvg-irf1421
Ads-tec Industrial It dvg-irf3401
Ads-tec Industrial It dvg-irf3421
Ads-tec Industrial It dvg-irf3801
Ads-tec Industrial It dvg-irf3821

Tue, 28 Jul 2026 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 28 Jul 2026 09:30:00 +0000

Type Values Removed Values Added
Description A low privileged remote attacker can perform privileged configuration changes reserved for the administrator level including permission management due to incorrect authorization.
Title ads-tec Industrial IT: Privilege escalation during configuration import
First Time appeared Ads Tec
Ads Tec irf1000 Firmware
Ads Tec irf3000 Firmware
Weaknesses CWE-863
CPEs cpe:2.3:o:ads_tec:irf1000_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ads_tec:irf3000_firmware:*:*:*:*:*:*:*:*
Vendors & Products Ads Tec
Ads Tec irf1000 Firmware
Ads Tec irf3000 Firmware
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Ads-tec Industrial It Dvg-irf1401 Dvg-irf1421 Dvg-irf3401 Dvg-irf3421 Dvg-irf3801 Dvg-irf3821
Ads Tec Irf1000 Firmware Irf3000 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: CERTVDE

Published:

Updated: 2026-07-28T13:29:55.370Z

Reserved: 2026-06-30T06:39:03.547Z

Link: CVE-2026-14167

cve-icon Vulnrichment

Updated: 2026-07-28T13:29:49.615Z

cve-icon NVD

Status : Deferred

Published: 2026-07-28T09:16:41.363

Modified: 2026-07-30T14:31:21.447

Link: CVE-2026-14167

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-03T15:30:03Z

Weaknesses