CVE-2026-1632

CRITICAL

MOMA Seismic Station <v2.4.2520 - Info Disclosure

Title source: llm
STIX 2.1

Description

MOMA Seismic Station Version v2.4.2520 and prior exposes its web management interface without requiring authentication, which could allow an unauthenticated attacker to modify configuration settings, acquire device data or remotely reset the device.

Scores

CVSS v3 9.1
EPSS 0.0047
EPSS Percentile 37.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-306
Status published
Products (1)
RISS SRL/MOMA Seismic Station < Version v2.4.2520
Published Feb 03, 2026
Tracked Since Feb 18, 2026