logo

Critical Flaws in KiloView Devices Enable Complete Admin Takeover

ID: 2eea5c43-ac4c-592b-8b5f-0042fb6e52ab

STIX ID: report--2eea5c43-ac4c-592b-8b5f-0042fb6e52ab

Feed Name: GBHackers

Threat Score
90/100

Date Published: 2026-02-03

Date Updated: 2026-05-08

Author: Divya

...
...

CISA issued an alert for CVE-2026-1453, a critical (CVSS 9.8) authentication-bypass vulnerability in multiple KiloView Encoder Series devices that enables unauthenticated remote attackers to create or delete administrator accounts and obtain full device control; the advisory lists affected models, credits the researcher, reports no observed exploitation, and recommends immediate mitigation steps such as isolating affected devices, restricting Internet access, using firewalls/VPNs carefully, and applying defense-in-depth measures.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.