Netis Systems Nx10 vulnerabilities
2 known vulnerabilities affecting netis_systems/nx10.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1
Vulnerabilities
Page 1 of 1
CVE-2026-61516P2CRITICALCVSS 9.8v4.0.1.5808v3.0.0.41422026-09-08
CVE-2026-61516 [CRITICAL] CWE-522 CVE-2026-61516: Netis NX10 firmware V4.0.1.5808 and V3.0.0.4142 contain an information disclosure vulnerability that
Netis NX10 firmware V4.0.1.5808 and V3.0.0.4142 contain an information disclosure vulnerability that allows unauthenticated attackers to retrieve the administrator password by sending a request to the sysinfo action in the web management interface without a valid session. Attackers can replay the exposed credential against the login handler to est
nvd
CVE-2026-61517P3HIGHCVSS 7.2v4.0.1.5808v3.0.0.41422026-09-08
CVE-2026-61517 [HIGH] CWE-78 CVE-2026-61517: Netis NX10 firmware V4.0.1.5808 and V3.0.0.4142 contain an OS command injection vulnerability in the
Netis NX10 firmware V4.0.1.5808 and V3.0.0.4142 contain an OS command injection vulnerability in the ping diagnostic handler that allows authenticated administrators to execute arbitrary shell commands as root by injecting into the IpAddr parameter. The parameter is interpolated directly into a shell command executed through system() with an incomplete
nvd