CVE-2026-6274
A security flaw in the Redline WR3200 device allows users to access sensitive functions without needing to log in. This occurs because the system fails to properly verify the identity of the user attempting to perform critical tasks.
An official fix is available, so this entry is kept for 30 days and then removed automatically.
Who is affected
Users of DTS Electronics Industry and Trade Ltd. Co. Redline WR3200 versions prior to 7.1.8.
Real-world impact
An attacker could remotely take control of the device's functions without needing a username or password, potentially allowing them to change settings or disrupt operations.
Why this severity
This is rated as critical because the vulnerability can be exploited remotely over a network without any user interaction or authentication, and it allows for complete loss of confidentiality, integrity, and availability.
What to do about it
- 01Upgrade Redline WR3200 to version 7.1.8 or later.
NVD-referenced vendor advisory
Timeline
- Jun 5, 2026 · Jun 5, 2026PublishedDisclosed and added to the National Vulnerability Database.
- Jul 23, 2026 · 12d agoAdvisory updatedThe NVD record was last revised.
- Jul 24, 2026 · 11d agoOfficial fix availableA vendor patch or mitigation now exists — see the remediation steps above.