A vulnerability (CVE-2026-5569) affecting Technostrobe HI-LED-WR120-G2 version 5.5.0.1R6.03.30 has been identified in an unspecified function within the /Technostrobe/ endpoint component that results in improper access controls, potentially impacting multiple endpoints. The vulnerability carries a CVSS score of 7.3 (HIGH) with a network-based attack vector requiring no authentication or user interaction, meaning it can be exploited remotely by an unauthenticated threat actor with minimal effort. Successful exploitation could lead to compromised confidentiality, integrity, and availability of affected systems. Exploit code has been publicly disclosed and is available for potential use by threat actors, though current EPSS metrics suggest relatively low probability of active exploitation. The vendor was notified early but has not responded, leaving affected organizations without an official patch or remediation guidance at this time.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
5.5.0.1r6.03.30CPE matchmatch criteria | cpe:2.3:o:technostrobe:hi-led-wr120-g2_firmware:5.5.0.1r6.03.30:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.