← All Advisories

Sauter modu680 Building Automation Controller TOCTOU Race Condition Allows Unauthenticated Remote Security Bypass

Last refreshed2026-10-07

Status: UPDATED  |  Advisory ID: CVE-2026-78319

Key Details

CVECVE-2026-78319
CVSS Score / Version9.3 (Critical) / CVSS v4.0
Updated2026-09-03
Affected productsSauter modu680-AS, Sauter modu660-AS, Sauter modu612-LC, Sauter ecos504, and Sauter ecos505
Classified asCWE-367 (Time-of-check Time-of-use (TOCTOU) Race Condition)
Exploitation prediction (EPSS)0.61% probability of exploitation in the next 30 days (47% percentile) -- FIRST.org's EPSS model.

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
Sautermodu680-AS
Sautermodu660-AS
Sautermodu612-LC
Sauterecos504
Sauterecos505
SubsystemsGeneral OT
SectorsMultiple

What to Know

A service running on the affected products contains a potential Time-of-Check Time-of-Use (TOCTOU) race condition.

An unauthenticated remote attacker could exploit this race condition to bypass intended security controls.

This may result in the execution of unauthorized code. (NVD)

What to Do

Monitor Sauter's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-78319
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-78319