CVE-2026-42933

CRITICAL

Unintended Proxy or Intermediary in Panduit IntraVUE by Pronetiqs

Title source: cna
STIX 2.1

Description

Pronetiqs IntraVUE versions 3.2.1a14 and prior have an unintended proxy or intermediary vulnerability which could allow an attacker to use an active proxy, which would bypass OT segmentation.

References (1)

Core 1
Core References
Government Resource government-resource
https://www.cisa.gov/news-events/ics-advisories/icsa-26-204-04

Scores

CVSS v3 10.0
EPSS 0.0029
EPSS Percentile 20.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-441
Status published
Products (1)
Pronetiqs/Panduit Intravue < 3.2.1a14
Published Jul 23, 2026
Tracked Since Jul 24, 2026