CVE-2026-76145
7.5
CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L
Summary
An improper privilege management vulnerability in Genian SSL PNS allows an attacker to escalate to super administrator privileges and force the creation of an OS account by manipulating the permission column during CSV bulk user registration
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Genians, Inc | Genian SSL PNS (frodo-core) | 0 < 5.0.0 | affected |
| Genians, Inc | Genian SSL PNS (watchcat-ui) | 0 < 5.0.0 | affected |
Weaknesses
- CWE-269: CWE-269 Improper Privilege Management
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: no
- Technical Impact: total
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.