CVE-2026-76144

Summary

An unrestricted file upload vulnerability caused by insufficient file extension and integrity verification in Genian SSL PNS allows an attacker to upload a dangerous file that is not an official patch

Affected Software

VendorProductVersion RangeStatus
Genians, IncGenian SSL PNS (frodo-core)0 < 5.0.0affected
Genians, IncGenian SSL PNS (watchcat-ui)0 < 5.0.0affected

Weaknesses

  • CWE-434: CWE-434 Unrestricted Upload of File with Dangerous Type

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References