Executive brief
The Teldat Regesta Smart HD-PLC, an industrial router used in power line communications, is vulnerable to a network-based attack that can disable its management interface. By sending specifically crafted, slow network traffic, an attacker can overwhelm the device's web service without needing any login credentials. This results in a denial-of-service condition, preventing administrators from managing or monitoring the device remotely.
Technical details
A vulnerability in the HTTP web service of the Teldat Regesta Smart HD-PLC (specifically model TLDPH16D2) allows for a Denial of Service (DoS) via a Slowloris attack. The issue stems from improper allocation of resources or lack of throttling (CWE-770) when handling HTTP headers. An unauthenticated remote attacker can initiate multiple slow HTTP connections, exhausting the available connection pool and rendering the web interface unresponsive. The vulnerability is confirmed in firmware version 11.02.05.10.02 and is addressed in version 11.02.06.00.02.
Affected products
- Teldat Regesta Smart HD-PLC - TLDPH16D2 11.02.05.10.02
Timeline
- 2026-06-17: disclosed
- 2026-06-17: advisory
- 2026-06-17: patched: Fixed in version 11.02.06.00.02
References
- https://support.teldat.com/images/content/docs/Teldat_dm1087_regesta_smart_nessum_series_installation(1).pdf
- https://support.teldat.com/portal/supportcontent?page=cgs-customer-global-support&none=true&language=en-US
- https://www.hackrtu.com/blog/CNA-CVE-2026-27869/
- https://www.hackrtu.com/blog/CNA-HRTU-0002/
- https://www.teldat.com/es/