No analysis available yet.
Vendor Solution
Red Lion controls recommends the following upgrades for the N-Tron 700 Series: * Upgrade to firmware version 3.11.1 or greater * Configure or disable the SNMP communities * Disable access to the web GUI The upgrade procedure document can be viewed here https://www.hms-networks.com/ . The advisory issued by HMS Networks regarding these vulnerabilities can be viewed here https://www.hms-networks.com/cybersecurity .
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 09 Oct 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Usernames and passwords, including the default factory credentials, are stored in plaintext within the configuration file. With administrator rights, the configuration file can be viewed through the CLI or they can be exported from the device through a TFTP transfer from the web interface. A TFTP transfer can be initiated through SNMP which does not require authentication. | |
| Title | Red Lion Controls N-Tron 700 Series Insufficiently Protected Credentials | |
| Weaknesses | CWE-522 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-10-09T14:30:47.942Z
Reserved: 2026-04-08T19:28:49.400Z
Link: CVE-2026-39460
No data.
No data.
No data.
OpenCVE Enrichment
No data.
-
CWE-522
Insufficiently Protected Credentials