Description

Yarbo firmware v2.3.9 contains hardcoded administrative credentials embedded in the firmware image. These credentials are identical across all devices running this firmware and cannot be changed or removed by end users, enabling trivial unauthorized access to device management interfaces by anyone who knows them.

INFO

Published Date :

2026-05-07T16:10:02.349Z

Last Modified :

2026-05-07T17:01:37.949Z

Source :

AHA
AFFECTED PRODUCTS

The following products are affected by CVE-2026-7414 vulnerability.

Vendors Products
Yarbo
  • Firmware

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact