Security Advisory

CVE-2026-7413

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-05-07 16:09:26
Last updated 2026-05-08 22:46:29
Assigner AHA
CVSS score 7.2
State PUBLISHED

Description

A hidden, persistent backdoor was found in Yarbo firmware v2.3.9 that provides remote, unauthenticated (or weakly authenticated) access to privileged functionality. The backdoor is undocumented, cannot be disabled via user-facing settings, and survives factory reset and ordinary firmware updates.