PT-2026-21789 · Tattile · Vega+2

Gjoko Krstic

·

Published

2026-02-24

·

Updated

2026-03-22

·

CVE-2026-26341

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Tattile Smart+, Vega, and Basic device families versions 1.181.5 and prior
Description The device families ship with default credentials that are not required to be changed during setup. An attacker reaching the management interface can use these default credentials to gain administrative access, potentially allowing unauthorized access to device configuration and data.
Recommendations Change the default credentials on all affected devices.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-26341

Affected Products

Basic
Tattile Smart+
Vega