← Back to home
ICSA-26-155-01  ·  Published 2026-06-04  ·  View on CISA ICS-CERT ↗

NAVTOR NavBox

CVSS 6.3 MEDIUM

Risk Summary

Successful exploitation of this vulnerability could allow a local attacker to gain unauthorized access to SOAP methods, resulting in a disruption of operations.

CVEs (1)

Remediations

  • NAVTOR has released a patch for NavBox in April 2026. Version 4.17.2.6 and later includes the fix. Users that have an active NavBox connection will automatically be kept up to date with the latest version. No user action required.

Affected Vendors

NAVTOR

Affected Products (1)

NAVTOR · NavBox 4.16.1.20

Affected Sectors

Information Technology

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more