Junglewise Threat Intelligence

CVE-2026-6017: KAON PG5298A and PG5298B authentication bypass information disclosure

CVE-2026-6017 · Severity: info · CVSS 7.5 · Published 2026-08-24

Executive brief

KAON residential gateway routers (used to deliver internet and TV services) contain a flaw that allows unauthenticated attackers to directly access a network endpoint and retrieve administrative credentials without any password or authentication. An attacker exploiting this vulnerability could gain full administrative access to the router, compromise connected networks, and potentially intercept customer data or disrupt service.

Technical details

The vulnerability is a missing authentication check (CWE-306) in the firmware of KAON PG5298A and PG5298B routers. An unauthenticated attacker can send requests to a specific endpoint and retrieve sensitive information, including administrative passwords for the router's management portal. No authentication is required to query this endpoint—it is directly accessible over the network. Successful exploitation grants an attacker credentials for administrative access to the device. The issue has been patched in firmware version 3.0.82 for PG5298A and 4.0.82 for PG5298B.

Affected products

  • KAON PG5298A before 3.0.82
  • KAON PG5298B before 4.0.82

Timeline

  • 2026-08-24: disclosed: Vulnerability disclosed by CERT Polska
  • 2026-08-24: patched: Firmware patches available: version 3.0.82 for PG5298A, 4.0.82 for PG5298B

References

Related threats