CVE-2026-15203
Debug interfaces are accessible by default in Danfoss iC7 Automation SP, iC7 Marine and iC7 7Hybrid software
CVSS Score
0.0
EPSS Score
0.4%
EPSS Percentile
29th
Improper access control in debug and engineering interfaces in Danfoss iC7-Automation SP, iC7-Marine, and iC7-Hybrid GR3 allows attackers to gain read/write access to internal values, upload and execute unsigned applications, and upload unsigned EEPROM data and firmware via exposed service interfaces and software update mechanisms
| CWE | CWE-1191 |
| Vendor | danfoss |
| Product | ic7-automation sp |
| Published | Aug 26, 2026 |
| Last Updated | Aug 26, 2026 |
Stay Ahead of the Next One
Get instant alerts for danfoss ic7-automation sp
Be the first to know when new unknown vulnerabilities affecting danfoss ic7-automation sp are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Danfoss / iC7-Automation SP
0 โค 2025.3.3
Danfoss / iC7-Marine
0 โค 2025.8.19
Danfoss / iC7-Hybrid
0 โค 2025.10.300845