CVE-2026-1632
Last modified
CVE-2026-1632 is a critical-severity vulnerability rated 9.3/10 on the CVSS scale. MOMA Seismic Station Version v2.4.2520 and prior exposes its web management interface without requiring authentication, which could allow an unauthenticated attacker to modify configuration settings, acquire device data or remotely reset the device.. EPSS estimates a 0.47% chance of exploitation in the next 30 days.
Description
MOMA Seismic Station Version v2.4.2520 and prior exposes its web management interface without requiring authentication, which could allow an unauthenticated attacker to modify configuration settings, acquire device data or remotely reset the device.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-1632?
How severe is CVE-2026-1632?
How do I fix CVE-2026-1632?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-16312Rejected reason: This CVE ID has been rejected or withdrawn …
- CVE-2026-16313A flaw was found in sg3_utils. The sg_inq command, when invo…7.6
- CVE-2026-16315OMICRON StationGuard before version 4.10 contains a cryptogr…8.7
- CVE-2026-16316OMICRON StationGuard 4.00 contains an improper input validat…4.3
- CVE-2026-16317Missing validation of the outer content_type byte on TLS 1.3…8.3
- CVE-2026-16318The QUIC transport parameters extension handler in s2n-tls i…6.9
- CVE-2026-16324A vulnerability was identified in Metasoft 美特软件 MetaCRM up t…7.3
- CVE-2026-16326In consul-mcp-server, versions 0.1.0 up to 0.1.3 did not pro…10
- CVE-2026-16327A vulnerability was determined in D-Link DNS-320 1.0.2. This…7.3
- CVE-2026-16328In consul-mcp-server, versions 0.1.0 up to 0.1.3 did not res…8.6
- CVE-2026-16329A vulnerability was identified in D-Link DNS-320 1.0.2. Impa…7.3
- CVE-2026-1633The Synectix LAN 232 TRIO 3-Port serial to ethernet adapter …10
Are you affected by CVE-2026-1632?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
