Critical severity9.1NVD Advisory· Published Feb 24, 2026· Updated Jun 17, 2026
CVE-2026-27515
CVE-2026-27515
Description
Binardat 10G08-0800GSM network switch firmware versions prior to V300SP10260209 generate predictable numeric session identifiers in the web management interface. An attacker can guess valid session IDs and hijack authenticated sessions.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:binardat:10g08-0800gsm_firmware:*:*:*:*:*:*:*:*Range: <=V300SP10260209
- Range: <V300SP10260209
- Binardat Ltd./10G08-0800GSM Network Switchv5Range: 0
Patches
Vulnerability mechanics
References
2- www.vulncheck.com/advisories/binardat-10g08-0800gsm-network-switch-predictable-session-identifiersnvdThird Party Advisory
- www.binardat.com/products/8-port-10-gigabit-sfp-managed-switch,-support-1g-sfp-and-10g-sfp-module,-160gbps-bandwidth,-l3-web-managed,-metal-fanless-fiber-binardat-network-switchnvdProduct
News mentions
0No linked articles in our index yet.