Ghostwire

CVE-2026-6284: An attacker with network access to the PLC is able to brute force discover passwords to gain unauthorized access to...

CRITICAL CVSS 9.5

Published: April 17, 2026 | Last Modified: April 17, 2026

Description

An attacker with network access to the PLC is able to brute force discover passwords to gain unauthorized access to systems and services. The limited password complexity and no password input limiters makes brute force password enumeration possible.

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

Security Coverage (2 articles)

References