CVE Database
/

CVE-2026-1453

Back to search

CVE-2026-1453

Published: Jan 29, 2026

Modified: Jan 29, 2026

PUBLISHED

CVSS v3.1

9.8

CRITICAL

Description

A missing authentication for critical function vulnerability in KiloView Encoder Series could allow an unauthenticated attacker to create or delete administrator accounts. This vulnerability can grant the attacker full administrative control over the product.

VendorProductVersions

KiloView

Encoder Series E1 hardware Version 1.4

affected
4.7.2516

KiloView

Encoder Series E1 hardware Version 1.6.20

affected
4.7.2511
affected
4.8.2523
affected
4.8.2611
affected
4.6.2400
affected
4.7.2512

+5 more versions

KiloView

Encoder Series E1-s hardware Version 1.4

affected
4.7.2516
affected
4.8.2519
affected
4.8.2525
affected
4.8.2611
affected
4.8.2561

+2 more versions

KiloView

Encoder Series E2 hardware Version 1.7.20

affected
4.8.2611
affected
4.8.2561

KiloView

Encoder Series E2 hardware Version 1.8.20

affected
4.8.2523
affected
4.8.2611
affected
4.8.2554

KiloView

Encoder Series G1 hardware Version 1.6.20

affected
4.8.2561

KiloView

Encoder Series P1 hardware Version 1.3.20

affected
4.8.2633
affected
4.8.2608

KiloView

Encoder Series P2 hardware Version 1.8.20

affected
4.8.2633

KiloView

Encoder Series RE1 hardware Version 2.0.00

affected
4.7.2513

KiloView

Encoder Series RE1 hardware Version 3.0.00

affected
4.8.2519
affected
4.8.2561
affected
4.8.2611
affected
4.8.2525

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector

Network

Attack Complexity

Low

Privileges Required

None

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

High

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now