2026-07-28 9:7CVE-2026-14169CERTVDE
PUBLISHED5.2CWE-696

ads-tec Industrial IT: Account lockout via non-atomic user creation

Due to incorrect behavior order a low privileged remote attacker could trigger account inconsistent state via crafted input and overwrites existing user passwords which could result in complete administrative unavailability of the device.

Problem type

Affected products

ads-tec Industrial IT

DVG-IRF1401

< 2.3.0 - AFFECTED

DVG-IRF1421

< 2.3.0 - AFFECTED

DVG-IRF3401

< 2.3.0 - AFFECTED

DVG-IRF3421

< 2.3.0 - AFFECTED

DVG-IRF3801

< 2.3.0 - AFFECTED

DVG-IRF3821

< 2.3.0 - AFFECTED

References

GitHub Security Advisories

GHSA-p3wp-7mgp-fwjp

Due to incorrect behavior order a low privileged remote attacker could trigger account...

https://github.com/advisories/GHSA-p3wp-7mgp-fwjp

Due to incorrect behavior order a low privileged remote attacker could trigger account inconsistent state via crafted input and overwrites existing user passwords which could result in complete administrative unavailability of the device.

JSON source

https://cveawg.mitre.org/api/cve/CVE-2026-14169
Click to expand
{
  "dataType": "CVE_RECORD",
  "dataVersion": "5.2",
  "cveMetadata": {
    "cveId": "CVE-2026-14169",
    "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
    "assignerShortName": "CERTVDE",
    "dateUpdated": "2026-07-28T13:59:20.151Z",
    "dateReserved": "2026-06-30T06:39:07.206Z",
    "datePublished": "2026-07-28T09:07:36.032Z",
    "state": "PUBLISHED"
  },
  "containers": {
    "cna": {
      "providerMetadata": {
        "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "shortName": "CERTVDE",
        "dateUpdated": "2026-07-28T09:07:36.032Z"
      },
      "title": "ads-tec Industrial IT: Account lockout via non-atomic user creation",
      "descriptions": [
        {
          "lang": "en",
          "value": "Due to incorrect behavior order a low privileged remote attacker could trigger account inconsistent state via crafted input and overwrites existing user passwords which could result in complete administrative unavailability of the device.",
          "supportingMedia": [
            {
              "type": "text/html",
              "base64": false,
              "value": "<p>Due to incorrect behavior order a low privileged remote attacker could trigger account inconsistent state via crafted input and overwrites existing user passwords which could result in complete administrative unavailability of the device.</p>"
            }
          ]
        }
      ],
      "affected": [
        {
          "vendor": "ads-tec Industrial IT",
          "product": "DVG-IRF1401",
          "defaultStatus": "unaffected",
          "versions": [
            {
              "version": "1.0.0",
              "status": "affected",
              "versionType": "semver",
              "lessThan": "2.3.0"
            }
          ]
        },
        {
          "vendor": "ads-tec Industrial IT",
          "product": "DVG-IRF1421",
          "defaultStatus": "unaffected",
          "versions": [
            {
              "version": "1.0.0",
              "status": "affected",
              "versionType": "semver",
              "lessThan": "2.3.0"
            }
          ]
        },
        {
          "vendor": "ads-tec Industrial IT",
          "product": "DVG-IRF3401",
          "defaultStatus": "unaffected",
          "versions": [
            {
              "version": "1.0.0",
              "status": "affected",
              "versionType": "semver",
              "lessThan": "2.3.0"
            }
          ]
        },
        {
          "vendor": "ads-tec Industrial IT",
          "product": "DVG-IRF3421",
          "defaultStatus": "unaffected",
          "versions": [
            {
              "version": "1.0.0",
              "status": "affected",
              "versionType": "semver",
              "lessThan": "2.3.0"
            }
          ]
        },
        {
          "vendor": "ads-tec Industrial IT",
          "product": "DVG-IRF3801",
          "defaultStatus": "unaffected",
          "versions": [
            {
              "version": "1.0.0",
              "status": "affected",
              "versionType": "semver",
              "lessThan": "2.3.0"
            }
          ]
        },
        {
          "vendor": "ads-tec Industrial IT",
          "product": "DVG-IRF3821",
          "defaultStatus": "unaffected",
          "versions": [
            {
              "version": "1.0.0",
              "status": "affected",
              "versionType": "semver",
              "lessThan": "2.3.0"
            }
          ]
        }
      ],
      "problemTypes": [
        {
          "descriptions": [
            {
              "lang": "en",
              "description": "CWE-696 Incorrect Behavior Order",
              "cweId": "CWE-696",
              "type": "CWE"
            }
          ]
        }
      ],
      "references": [
        {
          "url": "https://www.certvde.com/en/advisories/VDE-2026-076/"
        }
      ],
      "metrics": [
        {
          "format": "CVSS",
          "scenarios": [
            {
              "lang": "en",
              "value": "GENERAL"
            }
          ],
          "cvssV3_1": {
            "version": "3.1",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H",
            "attackVector": "NETWORK",
            "attackComplexity": "LOW",
            "privilegesRequired": "LOW",
            "userInteraction": "NONE",
            "scope": "UNCHANGED",
            "confidentialityImpact": "NONE",
            "integrityImpact": "HIGH",
            "availabilityImpact": "HIGH",
            "baseScore": 8.1,
            "baseSeverity": "HIGH"
          }
        }
      ]
    },
    "adp": [
      {
        "providerMetadata": {
          "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "shortName": "CISA-ADP",
          "dateUpdated": "2026-07-28T13:59:20.151Z"
        },
        "title": "CISA ADP Vulnrichment",
        "metrics": [
          {}
        ]
      }
    ]
  }
}