cbcvebase.
CVE-2026-76147
published 2026-10-01

CVE-2026-76147: A path traversal (ZIP Slip) vulnerability caused by insufficient authorization and integrity verification in the agent upgrade feature of Genian NAC/ZTNA…

PriorityP340medium5.9CVSS 4.0
AVNACHATNPRHUINVCNVIHVANSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
EPSS
0.40%
32.3th percentile
A path traversal (ZIP Slip) vulnerability caused by insufficient authorization and integrity verification in the agent upgrade feature of Genian NAC/ZTNA allows a remote attacker to execute arbitrary code

Affected

9 ranges
VendorProductVersion rangeFixed in
genians_incgenian_nac_4.0.175_release< 148817148817
genians_incgenian_nac_5.0.65_lts_release< 148816148816
genians_incgenian_nac_5.0.75_lts_release< 148815148815
genians_incgenian_nac_5.0.85_release_stable< 148814148814
genians_incgenian_nac_5.0.86_release< 148813148813
genians_incgenian_ztna_6.0.26_lts_release< 148811148811
genians_incgenian_ztna_6.0.35_lts_release< 148810148810
genians_incgenian_ztna_6.0.45_release_stable< 148809148809
genians_incgenian_ztna_6.0.46_release< 148807148807
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.