Red Lion Controls N-Tron 700 Series
CISA says Red Lion N-Tron 700 switches through firmware 3.11.0 have hardcoded credentials and authentication flaws.
CISA advisory ICSA-26-281-01 covers seven vulnerabilities in Red Lion Controls N-Tron 700 Series switches running firmware 3.11.0 or earlier and bootloader 2.0.6.1 or earlier. Default factory administrator credentials persist, and usernames and passwords are stored in plaintext or with weak encryption; an unauthenticated SNMP request can trigger a TFTP export of the configuration. Exploitation could yield administrative access to view, edit, and upload configuration, and a specific URL can force repeated reboots. Red Lion and HMS Networks recommend firmware 3.11.1 or later, plus restricting SNMP and the web interface.
55