What is CVE-2026-44092?
This critical vulnerability affects a ModbusServer application that fails to validate input fetched from MQTT, allowing an unauthenticated remote attacker to inject malicious code. Exploitation may lead to loss of integrity and availability on the target system. Immediate patching or enabling input validation is strongly recommended.
Azərbaycanca: Bu kritik zəiflik, MQTT-dən alınan giriş məlumatlarını yoxlamayan ModbusServer tətbiqinə təsir edir, autentifikasiya olunmamış uzaqdan hücumçuya zərərli kod yeritməyə imkan verir. Nəticədə hədəf sistemdə məlumat bütövlüyü (integrity) və əlçatanlıq (availability) itirilə bilər. Dərhal tətbiqi yeniləmək və ya giriş doğrulama mexanizmlərini aktivləşdirmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-94
FAQ2
Which component is affected by CVE-2026-44092?
This critical vulnerability affects a ModbusServer application that fails to validate input fetched from MQTT.
What impact can an unauthenticated remote attacker cause by exploiting CVE-2026-44092?
By injecting malicious code, the attacker may lead to loss of integrity and availability on the target system.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.