Ghostwire

CVE-2026-33272: A malicious user with physical access to the device can boot the switch from factory settings without authentication,...

MEDIUM CVSS 0.0

Published: October 9, 2026 | Last Modified: October 9, 2026

Description

A malicious user with physical access to the device can boot the switch from factory settings without authentication, use the default administrative credentials to obtain administrative access, and save changes to the configuration file so that they persist next time the switch boots normally.

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

Security Coverage (1 articles)

References