CVE-2026-32961 is a heap-based buffer overflow vulnerability affecting Silex Technology's SD-330AC and AMC Manager products, specifically within the sx_smpd packet data processing component. The flaw can be triggered by a specially crafted network packet to cause temporary denial-of-service conditions. The vulnerability carries a CVSS 3.1 score of 5.3 (Medium severity) with a network-based attack vector requiring no authentication or user interaction, making it easily exploitable by remote threat actors. However, the impact is limited to availability disruption, with no confidentiality or integrity implications. Exploitation status remains low, as CVE-2026-32961 is not listed on the CISA Known Exploited Vulnerabilities catalog and shows minimal community attention with an exceptionally low EPSS score of 0.0002, indicating negligible real-world exploitation probability. No public exploit code is currently known to be circulating, and the vulnerability remains inactive on active threat tracking lists.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 1.50CPE matchmatch criteria | cpe:2.3:o:silextechnology:sd-330ac_firmware:*:*:*:*:*:*:*:* | ||
< 5.1.0CPE matchmatch criteria | cpe:2.3:a:silextechnology:amc_manager:*:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.