CVE-2026-25823Disclosure

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

HMS Networks Ewon Flexy with firmware before 15.0s4, Cosy+ with firmware 22.xx before 22.1s6, and Cosy+ with firmware 23.xx before 23.0s3 have a stack buffer overflow that leads to a Denial of Service, which can also be exploited to achieve Unauthenticated Remote Code Execution.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-121

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 4 signals
  • Disclosure: 4 classified signals
  • Peaked 1d ago at 3 mentions (2026-03-13); latest day: 1
  • 4 total mentions across 2 days

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-03-13: 3Mentions · 2026-03-14: 1Technical Details · 2026-03-13: 3Technical Details · 2026-03-14: 103-1303-14
Signal classification1 categories
Disclosure
4100.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-03-133
Disclosure3
2026-03-141
Disclosure1
Full discourse4 posts
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2026-25823 - Critical HMS Networks Ewon Flexy with firmware before 15.0s4, Cosy+ with firmware 22.xx before 22.1s6, and Cosy+ with firmware 23.xx before 23.0s3 have a stack buffer overflow that leads to a Deni... https://www.thehackerwire.com/vulnerability/CVE-2026-25823/ https://t.co/cwI3G3bIlB

    Post summary

    A stack buffer overflow vulnerability (CVE‑2026‑25823) affecting certain HMS Networks firmware versions has been disclosed, potentially leading to denial of service. No patches or exploit details are provided.

    0000060
    135 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-25823: CRITICAL] Critical vulnerability in HMS Networks Ewon Flexy & Cosy+ with firmware versions before 15.0s4 & 22.xx-23.xx. Exploitable for Denial of Service & Unauthenticated Remote Code Execut...#cve,CVE-2026-25823,#cybersecurity https://cvefind.com/CVE-2026-25823

    Post summary

    The text announces a critical CVE (2026-25823) affecting HMS Networks Ewon Flexy & Cosy+ firmware, describing its impact as denial of service and unauthenticated remote code execution, with no PoC, exploit code, or patch information provided.

    0000037
    602 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-25823 HMS Networks Ewon Flexy with firmware before 15.0s4, Cosy+ with firmware 22.xx before 22.1s6, and Cosy+ with firmware 23.xx before 23.0s3 have a stack buffer overflow… https://www.cve.org/CVERecord?id=CVE-2026-25823 ----- Traducción: CVE-2026-25823 HMS… http://infoflow.cloud`

    Post summary

    The text announces a stack buffer overflow vulnerability (CVE-2026-25823) impacting certain firmware versions of HMS Networks Ewon Flexy and Cosy+ devices, without mentioning PoC, exploit tools, or patches.

    0000027
    57 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-25823 HMS Networks Ewon Flexy with firmware before 15.0s4, Cosy+ with firmware 22.xx before 22.1s6, and Cosy+ with firmware 23.xx before 23.0s3 have a stack buffer overflow… https://www.cve.org/CVERecord?id=CVE-2026-25823

    Post summary

    The post discloses a stack buffer overflow affecting specific firmware versions of HMS Networks Ewon Flexy and Cosy+ devices, with no mention of PoC, exploit, patch, or active exploitation.

    00000165
    56.7K followersView on X

Explore more