Vulnerabilities in Netcore

36 results
Vexday analysis

Netcore possui 4 vulnerabilidades cadastradas, nenhuma com evidência de ataque ativo ou classificação crítica, e nenhuma publicada recentemente. A fraqueza dominante identificada é CWE-77 (Improper Neutralization of Special Elements used in a Command), indicando risco de injeção de comando que requer atenção em ciclos regulares de correção, mas sem pressão imediata de exploit.

CVE-2026-76859HIGHNetcore NR255-V 1.5.130703 Sensitive Information Disclosure via user_pass_show.cgiEPSS 0.3%CVE-2026-76857HIGHNetcore NR255-V 1.5.130703 Plaintext DDNS Credential Disclosure via ddns_wan_list_show.cgiEPSS 0.3%CVE-2026-76870HIGHNetcore NR255-V 1.5.130703 Out-of-Bounds Read in mtd_write Firmware Upload ValidationEPSS 0.3%CVE-2026-76858MEDIUMNetcore NR255-V 1.5.130703 Stored Cross-Site Scripting via DDNS eval() in ddns_wan_list_show.cgiEPSS 0.3%CVE-2026-76871HIGHNetcore NR255-V 1.5.130703 Sensitive Information Disclosure via VPN Read HandlersEPSS 0.3%CVE-2026-92256HIGHNetcore NR255-V 1.5.130703 IPsec PSK and RSA Key Disclosure via l2tpd_config_show.cgi Read HandlersEPSS 0.3%CVE-2026-92255MEDIUMNetcore NR255-V 1.5.130703 Out-of-Bounds Read in filter_arp_put_file.cgi via String API MisuseEPSS 0.3%CVE-2026-76852HIGHNetcore NR268 1.7.121109 Forgeable Firmware Authenticity Check in mtd_writeEPSS 0.2%CVE-2026-76863MEDIUMNetcore NR255-V 1.5.130703 Sensitive Information Disclosure via QoS Bandwidth Plan RoutesEPSS 0.2%CVE-2026-76853HIGHNetcore NR268 1.7.121109 Security Check Bypass in parame_put_file.cgiEPSS 0.2%CVE-2026-76864MEDIUMNetcore NR255-V 1.5.130703 Stored Cross-Site Scripting via Unescaped QoS Rule NamesEPSS 0.2%CVE-2026-76873MEDIUMNetcore NR255-V 1.5.130703 Stored Cross-Site Scripting via DHCP and ARP Hostname FieldsEPSS 0.2%CVE-2026-92257MEDIUMNetcore NR255-V 1.5.130703 Stored Cross-Site Scripting in L7 Content Management via eval() SinksEPSS 0.2%CVE-2026-76872MEDIUMNetcore NR255-V 1.5.130703 Stored Cross-Site Scripting via DHCP/ACL Management PagesEPSS 0.2%CVE-2026-76867MEDIUMNetcore NR255-V 1.5.130703 Stored Cross-Site Scripting in Route/NAT Configuration CGI HandlersEPSS 0.2%CVE-2026-76856HIGHNetcore NR255-V 1.5.130703 Cross-Site Request Forgery in WAN/LAN Configuration EndpointsEPSS 0.2%