Track vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
10.0

CVE-2026-42933: Pronetiqs IntraVUE Proxy Bypass Risk

CVE-2026-42933 · published 2 months ago
Summary

Pronetiqs IntraVUE versions 3.2.1a14 and earlier have a security weakness that could allow hackers to bypass certain security controls. This could potentially allow unauthorized access to sensitive areas of a system. To stay secure, update to a newer version of Pronetiqs IntraVUE as soon as possible.

What to do

The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.

Affected software
VendorProductAffected versions
pronetiqs panduit intravue <= 3.2.1a14
Original advisory text
Pronetiqs IntraVUE versions 3.2.1a14 and prior have an unintended proxy or intermediary vulnerability which could allow an attacker to use an active proxy, which would bypass OT segmentation.
Pronetiqs IntraVUE versions 3.2.1a14 and prior have an unintended proxy or intermediary vulnerability which could allow an attacker to use an active proxy, which would bypass OT segmentation.
Fix within
Internet-facing 3 days
Internal 60 days
  • Not known to be exploited
  • Can be exploited automatically
  • Gives an attacker full control
Severity
10.0 Critical
Exploitation
<1% chance of attack within 30 days
Type
CWE-441Unintended Proxy or Intermediary ('Confused Deputy')
Timeline
Published23 Jul 2026
Updated7 Oct 2026
First seen23 Jul 2026
Sources
CVE-2026-42933 · MITRE
Track software like this
Free during beta