What is CVE-2026-5846?
CVE-2026-5846 is a critical vulnerability in Watchfire Controller Software involving hard-coded RSA private keys in plaintext. This compromises HTTPS/TLS connections to the web management interface, enabling attackers to decrypt traffic. An immediate software update is required.
Azərbaycanca: CVE-2026-5846 Watchfire Controller Software-da aşkar edilmiş ciddi zəiflikdir. Tətbiqin kodunda açıq mətn şəklində yerləşdirilmiş xüsusi RSA açarı HTTPS/TLS bağlantılarının şifrələnməsini təhlükəyə atır, təcavüzkara trafiki deşifrə etməyə imkan verir. Dərhal proqram təminatı yeniləməsi tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-798
FAQ2
Why is CVE-2026-5846 considered a critical vulnerability?
This vulnerability is critical because hard-coded RSA private keys in plaintext within the software compromise the encryption of HTTPS/TLS connections. This enables an attacker to decrypt traffic to the web management interface.
What action is required for CVE-2026-5846?
To address CVE-2026-5846, an immediate software update for the Watchfire Controller must be applied.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.