Skip to content

Nozomi Networks Labs vulnerabilities

3 CVEs tracked

Nozomi Networks Labs appears in our reporting in the context of both threat intelligence and ICS vulnerability research. They discovered a new Mirai-derived IoT botnet named 'Tengu' that forces infected Linux devices to reboot for persistence. They also identified three vulnerabilities in KUNBUS piControl version 2.6.2: CVE-2026-13196, CVE-2026-13197, and CVE-2026-13198. Defenders should pay attention to these CVEs, particularly the Out-of-bounds Write (CVE-2026-13196) and Race Condition flaws (CVE-2026-13197, CVE-2026-13198) that are exploitable by a local authenticated attacker.

Azərbaycanca: Nozomi Networks Labs hesabatlarımızda həm təhlükə kəşfiyyatı, həm də ICS zəiflik tədqiqatı kontekstində görünür. Onlar 'Tengu' adlı yeni Mirai əsaslı IoT botnetini aşkar edib ki, o, Linux cihazlarını reboot edərək silinməyə davamlılıq göstərir. Eyni zamanda, KUNBUS piControl 2.6.2 məhsulunda üç zəiflik (CVE-2026-13196, CVE-2026-13197, CVE-2026-13198) müəyyənləşdiriblər. Müdafiəçilər bu CVE-lərlə bağlı xüsusilə yerli autentifikasiya olunmuş hücumçu tərəfindən istismar edilə bilən Out-of-bounds Write (CVE-2026-13196) və Race Condition (CVE-2026-13197, CVE-2026-13198) zəifliklərinə qarşı diqqətli olmalıdırlar.

This vendor's CVEs3

This hub is built from skopnix's own reporting on Nozomi Networks Labs: the overview is AI-written from that coverage and every CVE links to its grounded explainer. KEV status comes from CISA's Known Exploited Vulnerabilities catalog and EPSS from FIRST — vendor, version and score details are never invented.