Junglewise Threat Intelligence

CVE-2026-8403: Eksagate SYSGUARD 6001 stored XSS

CVE-2026-8403 · Severity: medium · CVSS 6.1 · Published 2026-06-30

Executive brief

A stored cross-site scripting vulnerability exists in the Eksagate SYSGUARD 6001, an environmental monitoring and management appliance. An attacker can inject malicious scripts into the device's management interface, which could lead to the theft of session cookies or unauthorized actions when an administrator views the affected pages. The manufacturer has stated that this product is no longer supported, meaning no official security patches will be released.

Technical details

A stored cross-site scripting (XSS) vulnerability exists in Eksagate SYSGUARD 6001 versions 2.0.2 through 6.1.4.0. The flaw stems from improper neutralization of user-supplied input during web page generation (CWE-79). A remote, unauthenticated attacker can exploit this by submitting malicious scripts that are then permanently stored on the server. When a victim (typically an administrator) accesses the compromised page, the script executes in their browser context, potentially allowing for session hijacking or credential theft. The vendor has confirmed the product is end-of-life and will not receive updates.

Affected products

  • Eksagate Electronic Engineering and Computer Industry Trade Inc. SYSGUARD 6001 2.0.2 to 6.1.4.0

Timeline

  • 2026-06-30: advisory: Initial disclosure by TR-CERT
  • 2026-06-30: disclosed: Vendor confirmed product is unsupported

References

Related threats