Ceragon Siklu MultiHaul and EtherHaul Series
2026-03-10T19:24:36Z•c8ee8d103980fa4d42aa2acffdf71bc430b032aeebb27726b8ed803f78f5fbfd
ApemanArbitrary File UploadAuthentication BypassCISA ICS AdvisoryCamera CompromiseCeragonCharging Station BackendDelta ElectronicsEveronHoneywellInsufficient Session ExpirationLantronixOS Command InjectionOT/ICSOut-of-bounds WriteRemote Code ExecutionSikluUnauthenticated AccessePower
What happened
CISA published multiple ICS/OT advisories covering vulnerabilities in products from Ceragon/Siklu, Honeywell, Lantronix, Apeman, Delta Electronics, Everon, and ePower. Issues include arbitrary/dangerous file upload, missing authentication for critical functions (leading to full administrative access), authentication bypass, OS command injection, out-of-bounds write (RCE), insufficient session protections, and camera compromise. Impacts include unauthorized administrative control, remote code execution, device takeover, denial-of-service, and sensitive data disclosure. Several issues are high/0
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- cisa_ics_advisories
- Record identifier
- c8ee8d103980fa4d42aa2acffdf71bc430b032aeebb27726b8ed803f78f5fbfd
- Enrichment time
- 2026-03-10T19:24:36Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.