CVE-2026-76147
published 2026-10-01CVE-2026-76147: A path traversal (ZIP Slip) vulnerability caused by insufficient authorization and integrity verification in the agent upgrade feature of Genian NAC/ZTNA…
PriorityP340medium5.9CVSS 4.0
AVNACHATNPRHUINVCNVIHVANSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
EPSS
0.40%
32.3th percentile
A path traversal (ZIP Slip) vulnerability caused by insufficient authorization and integrity verification in the agent upgrade feature of Genian NAC/ZTNA allows a remote attacker to execute arbitrary code
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| genians_inc | genian_nac_4.0.175_release | < 148817 | 148817 |
| genians_inc | genian_nac_5.0.65_lts_release | < 148816 | 148816 |
| genians_inc | genian_nac_5.0.75_lts_release | < 148815 | 148815 |
| genians_inc | genian_nac_5.0.85_release_stable | < 148814 | 148814 |
| genians_inc | genian_nac_5.0.86_release | < 148813 | 148813 |
| genians_inc | genian_ztna_6.0.26_lts_release | < 148811 | 148811 |
| genians_inc | genian_ztna_6.0.35_lts_release | < 148810 | 148810 |
| genians_inc | genian_ztna_6.0.45_release_stable | < 148809 | 148809 |
| genians_inc | genian_ztna_6.0.46_release | < 148807 | 148807 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-10-01
Published