CVE-2026-104075 PUBLISHED

TVU Networks Receiver/Transceiver Authentication Bypass via /tvu/Login

Assigner: VulnCheck
Reserved: 01.10.2026 Published: 08.10.2026 Updated: 08.10.2026

TVU Networks Receiver/Transceiver devices running firmware before version 7.9 contain an authentication bypass vulnerability in the web management login endpoint POST /tvu/Login that allows remote unauthenticated attackers to obtain an administrative session by submitting an empty or absent UserName parameter. Attackers can send a crafted HTTP request directly, bypassing client-side JavaScript validation, to receive a valid session cookie regardless of the password value and gain full administrative control of the device's web management interface.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS Score: 9.3

Product Status

Vendor TVU Networks
Product TVU Receiver / Transceiver
Versions Default: unaffected
  • affected from 0 to 7.9 (excl.)

Credits

  • Dr. Henning Kopp of CODE WHITE finder

References

Problem Types

  • Authentication Bypass Using an Alternate Path or Channel CWE