🔐 CVE Alert

CVE-2026-6017

UNKNOWN 0.0

Missing Authentication for Critical Function in KAON PG5298

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Firmware in KAON PG5298A and PG5298B routers allow an unauthenticated user to query a specific endpoint and acquire sensitive information such as a password to the administrative portal.   This vulnerability has been fixed in firmware version: 3.0.82 for PG5298A and 4.0.82 for PG5298B.

CWE CWE-306
Vendor kaon
Product pg5298a
Published Aug 24, 2026
Stay Ahead of the Next One

Get instant alerts for kaon pg5298a

Be the first to know when new unknown vulnerabilities affecting kaon pg5298a are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

Affected Versions

KAON / PG5298A
0 < 3.0.82
KAON / PG5298B
0 < 4.0.82

References

NVD ↗ CVE.org ↗ EPSS Data ↗
cert.pl: https://cert.pl/en/posts/2026/08/CVE-2025-63080/

Credits

Mikołaj Pisula