CVE-2026-42933
CRITICALUnintended Proxy or Intermediary in Panduit IntraVUE by Pronetiqs
Title source: cnaDescription
Pronetiqs IntraVUE versions 3.2.1a14 and prior have an unintended proxy or intermediary vulnerability which could allow an attacker to use an active proxy, which would bypass OT segmentation.
References (1)
Core 1
Core References
Government Resource government-resource
https://www.cisa.gov/news-events/ics-advisories/icsa-26-204-04
Scores
CVSS v3
10.0
EPSS
0.0029
EPSS Percentile
20.7%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
yes
Technical Impact
total
Details
CWE
CWE-441
Status
published
Products (1)
Pronetiqs/Panduit Intravue
< 3.2.1a14
Published
Jul 23, 2026
Tracked Since
Jul 24, 2026