{"id":"CVE-2026-80275","title":"Comelit Multi-User Gateway for VIP System (model 1456B) firmware versions 2.9.1 and 2.10.0 fail to enforce server-side authorization on an administrative password-change function","summary":"Comelit Multi-User Gateway for VIP System (model 1456B) firmware versions 2.9.1 and 2.10.0 fail to enforce server-side authorization on an administrative password-change function. An authenticated user level can invoke this function to o…","severity":"high","cvss":8.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-425"],"vendor":"Comelit Group S.p.A.","product":"1456B Multi-User Gateway","affected":["1456b_multi-user_gateway 2.9.1","1456b_multi-user_gateway 2.10.0"],"published":"2026-10-01","updated":"2026-10-01","sourceUpdated":"2026-10-01T16:18:00.330","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-80275","references":[{"url":"https://pro.comelitgroup.com/en-us/product/1456B","label":"db4dfee8-a97e-4877-bfae-eba6d14a2166"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"total","timestamp":"2026-10-01T15:32:58.651997Z"},"ingestedAt":"2026-10-01T06:38:44.648Z","slug":"CVE-2026-80275","body":"## Overview\n\nComelit Multi-User Gateway for VIP System (model 1456B) firmware versions 2.9.1 and 2.10.0 fail to enforce server-side authorization on an administrative password-change function. An authenticated user level can invoke this function to overwrite the installer (administrator) account password.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":48,"depthScoreParts":{"impact":48.4,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}