Netcore NBR200V2 Traceroute Diagnostic Feature network_tools command injection
48Vexday Risk Score
Sin señal de explotación. Ella tiene prueba de concepto pública.
ssvc Attendcvss 9.4epss 1.7%
de la publicación al arma1 días
Publicada en NVD20 sept
1ª PoC+1d
probabilidad de explotación
1.7%top 25% de las CVE
explotación observada
noninguna fuente lo reporta
2 exploit(s) público(s)
A vulnerability has been found in Netcore NBR200V2 1.3.241127.071246. Affected by this vulnerability is an unknown functionality of the file /usr/bin/network_tools of the component Traceroute Diagnostic Feature. The manipulation of the argument url leads to command injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P
Productos afectados
Netcore · NBR200V2PoCs públicas encontradas — 2
githubgithub.com/HackSpeak/CVE-2026-94095★ 1cve_referenceapp.notion.com/p/Netcore-NBR200V2-Vul-3-39f797159f15802296c7f6e110363435no verificado⚠ Recursos públicos, para evaluar la exposición de sistemas que controlas o estás autorizado a probar. Prueba solo con autorización.