Unrated severityNVD Advisory· Published Mar 24, 2026· Updated Mar 24, 2026
Missing Authentication for Critical Function in Pharos Controls Mosaic Show Controller
CVE-2026-2417
Description
A Missing Authentication for Critical Function vulnerability in Pharos Controls Mosaic Show Controller firmware version 2.15.3 could allow an unauthenticated attacker to bypass authentication and execute arbitrary commands with root privileges.
Affected products
2- Range: = 2.15.3
- Pharos Controls/Mosaic Show Controllerv5Range: 2.15.3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- www.cisa.gov/news-events/ics-advisories/icsa-26-083-01mitregovernment-resource
News mentions
0No linked articles in our index yet.