CVE-2026-76145

Summary

An improper privilege management vulnerability in Genian SSL PNS allows an attacker to escalate to super administrator privileges and force the creation of an OS account by manipulating the permission column during CSV bulk user registration

Affected Software

VendorProductVersion RangeStatus
Genians, IncGenian SSL PNS (frodo-core)0 < 5.0.0affected
Genians, IncGenian SSL PNS (watchcat-ui)0 < 5.0.0affected

Weaknesses

  • CWE-269: CWE-269 Improper Privilege Management

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References