Description
In Teltonika Networks RUTOS devices, a vulnerability exists in modbusgwd
due to improper handling of Modbus TCP request data. A remote,
unauthenticated attacker with access to the affected service could
trigger a heap-based buffer overflow, resulting in a denial of service.
Published: 2026-08-13
Score: 6 Medium
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A vulnerability exists in the modbusgwd service of Teltonika Networks RUTOS devices. Improper handling of incoming Modbus TCP request data can cause a heap-based buffer overflow. When exploited, this flaw can crash the modbusgwd daemon, denying service to legitimate users. The flaw does not provide a path to code execution or data disclosure, but it does allow an attacker to disrupt network device operation.

Affected Systems

Teltonika Networks RUTOS firmware versions prior to 7.24.2 are affected. The vulnerability is tied to the modbusgwd component, which processes Modbus TCP traffic. Any device running an unsupported RUTOS version that exposes the Modbus service to external networks is within scope.

Risk and Exploitability

The CVSS score of 6 indicates moderate severity. EPSS information is not available, and the vulnerability is not listed in the CISA KEV catalog, suggesting no known large-scale exploitation yet. Attackers can trigger the overflow by sending crafted Modbus TCP requests from any network that can reach the device, without needing authentication. While the impact is limited to service denial, the ease of exploitation poses a risk to operational continuity for network infrastructure relying on the affected device.

Generated by OpenCVE AI on August 13, 2026 at 12:49 UTC.

Remediation

Vendor Solution

Update to RUTOS 7.24.2 or later


OpenCVE Recommended Actions

  • Update the device to RUTOS firmware 7.24.2 or later to apply the vendor‑issued fix.
  • If a firmware update cannot be applied immediately, disable the Modbus service or restrict inbound access to the service using firewall or access control lists.
  • Verify that the Modbus service no longer accepts external requests after the update or restriction has been applied.

Generated by OpenCVE AI on August 13, 2026 at 12:49 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 13 Aug 2026 13:00:00 +0000

Type Values Removed Values Added
First Time appeared Teltonika-networks
Teltonika-networks rutos
Vendors & Products Teltonika-networks
Teltonika-networks rutos

Thu, 13 Aug 2026 11:15:00 +0000

Type Values Removed Values Added
Description In Teltonika Networks RUTOS devices, a vulnerability exists in modbusgwd due to improper handling of Modbus TCP request data. A remote, unauthenticated attacker with access to the affected service could trigger a heap-based buffer overflow, resulting in a denial of service.
Title Heap buffer overflow in Modbusgwd
Weaknesses CWE-122
References
Metrics cvssV4_0

{'score': 6, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Teltonika-networks Rutos
cve-icon MITRE

Status: PUBLISHED

Assigner: tlt_net

Published:

Updated: 2026-08-13T14:43:24.994Z

Reserved: 2026-07-30T09:45:28.289Z

Link: CVE-2026-18368

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-13T11:17:38.497

Modified: 2026-08-13T15:19:34.837

Link: CVE-2026-18368

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-13T13:00:04Z

Weaknesses
  • CWE-122

    Heap-based Buffer Overflow