Critical Flaws in KiloView Devices Enable Complete Admin Takeover
ID: 2eea5c43-ac4c-592b-8b5f-0042fb6e52ab
STIX ID: report--2eea5c43-ac4c-592b-8b5f-0042fb6e52ab
Feed Name: GBHackers
CISA issued an alert for CVE-2026-1453, a critical (CVSS 9.8) authentication-bypass vulnerability in multiple KiloView Encoder Series devices that enables unauthenticated remote attackers to create or delete administrator accounts and obtain full device control; the advisory lists affected models, credits the researcher, reports no observed exploitation, and recommends immediate mitigation steps such as isolating affected devices, restricting Internet access, using firewalls/VPNs carefully, and applying defense-in-depth measures.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
