What is CVE-2026-18368?
CVE-2026-18368 is a vulnerability in the modbusgwd service of Teltonika Networks RUTOS devices due to improper handling of Modbus TCP request data. A remote, unauthenticated attacker with access to the affected service can trigger a heap-based buffer overflow, resulting in a denial of service. It is recommended to apply the vendor's security updates to mitigate the issue.
Azərbaycanca: CVE-2026-18368 Teltonika Networks RUTOS cihazlarının modbusgwd servisində aşkarlanmış zəiflikdir. Modbus TCP sorğu məlumatlarının düzgün idarə edilməməsi səbəbindən, uzaqdan təsdiqlənməmiş hücumçu heap-based buffer overflow yaradaraq xidmətə qarşı denial of service (DoS) həyata keçirə bilər. Cihazları qorumaq üçün istehsalçının təhlükəsizlik yeniləmələrini tətbiq etmək tövsiyəli̇dir.
Related CVEs
link basis: same weakness class CWE-787
FAQ2
Which vendor's devices are affected by CVE-2026-18368?
This vulnerability affects Teltonika Networks RUTOS devices.
What is the impact of exploiting CVE-2026-18368?
A remote unauthenticated attacker can trigger a heap-based buffer overflow in the modbusgwd service, causing a denial of service (DoS).
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.