← Vulnerability feed

Vulnerability record · CVE-2026-40425 · published 29 May 2026

CVE-2026-40425: Macgregor interschalt vdr g4e firmware vulnerability

Macgregor · Interschalt Vdr G4e Firmware

The administrator account for the Danelec MacGregor Voyage Data Recorder web interface can directly edit sensitive files related to authentication, potentially changing the root password.

6.9 CVSS 4.0 Medium EPSS 0.60% · top 53.3% CWE-552 · CWE-552
6.9CVSS 4.0 base score
0.60%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
3References
20 Jul 2026Last modified by NVD

Description

The administrator account for the Danelec MacGregor Voyage Data Recorder web interface can directly edit sensitive files related to authentication, potentially changing the root password.

CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:H/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2026-40425 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.7CVE-2026-42929Macgregor interschalt vdr g4e firmware hard-coded credentials vulnerabilityDanelec MacGregor Voyage Data Recorder includes default accounts with hard-coded credentials.EPSS 0.34%8.7CVE-2026-42941Macgregor interschalt vdr g4e firmware vulnerabilityThe Danelec MacGregor Voyage Data Recorder device includes a default username and password, with no enforced password change.EPSS 0.34%5.9CVE-2026-42951Macgregor interschalt vdr g4e firmware insufficiently protected credentials vulnerabilityAn authenticated user can download a backup of the Danelec MacGregor Voyage Data Recorder device which includes account data and password hashes.EPSS 0.23%5.9CVE-2026-44611Macgregor interschalt vdr g4e firmware vulnerabilityDanelec MacGregor Voyage Data Recorder passwords are stored with a hashing method which limits password length and is susceptible to brute force atta…EPSS 0.19%5.3CVE-2016-9339Macgregor interschalt vdr g4e firmware path traversal vulnerabilityAn issue was discovered in INTERSCHALT Maritime Systems VDR G4e Versions 5.220 and prior. External input is used to construct paths to files and dire…EPSS 1.7%7.5CVE-2025-11371Gladinet CentreStack and Triofox unauthenticated local file inclusionCentreStack and Triofox in default installation and configuration contain an unauthenticated local file inclusion flaw that allows unintended disclos…KEVEPSS 92%analysed4.0CVE-2025-48928TeleMessage TM SGNL JSP heap dump exposes passwords sent over HTTPThe TeleMessage service through 2025-05-05 runs a JSP application whose heap content is roughly equivalent to a core dump, and a password previously …KEVEPSS 0.55%analysed7.5CVE-2020-17519Apache Flink JobManager REST interface arbitrary file readA change introduced in Apache Flink 1.11.0 lets attackers read any file on the JobManager's local filesystem through its REST interface, limited to f…KEVEPSS 98%analysed

Source: NIST National Vulnerability Database (record CVE-2026-40425), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.