CVE-2026-6274 PUBLISHED

Authentication Bypass in DTS Electronics' Redline WR3200

Assigner: TR-CERT
Reserved: 14.04.2026 Published: 05.06.2026 Updated: 05.06.2026

Improper Authentication, Missing authentication for critical function, Weak Authentication vulnerability in DTS Electronics Industry and Trade Ltd. Co. Redline WR3200 allows Accessing Functionality Not Properly Constrained by ACLs.

This issue affects Redline WR3200: from 7.1.3 before 7.1.8.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS Score: 9.8

Product Status

Vendor DTS Electronics Industry and Trade Ltd. Co.
Product Redline WR3200
Versions Default: unaffected
  • affected from 7.1.3 to 7.1.8 (excl.)

Credits

  • Deniz BEKTAŞ finder

References

Problem Types

  • CWE-287 Improper Authentication CWE
  • CWE-306 Missing authentication for critical function CWE
  • CWE-1390 Weak Authentication CWE

Impacts

  • CAPEC-1 Accessing Functionality Not Properly Constrained by ACLs