Security Advisory

CVE-2026-13196

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-14 15:00:48
Last updated 2026-08-14 19:45:53
Assigner Nozomi
CVSS score 7.3
State PUBLISHED

Description

Nozomi Networks Labs identified a CWE-787: Out-of-bounds Write vulnerability in the process-image management functionality of KUNBUS piControl in version 2.6.2 that allows a local authenticated attacker with device configuration access to write attacker-controlled data outside the bounds of the process-image buffer and corrupt adjacent kernel memory, resulting in kernel memory corruption and denial of service, by supplying crafted device configuration data and crafted input through the piControl character device.