CVE-2026-76868

MEDIUM Status: Received

CVSS Scores

CVSS v3.x Base Score
4.9
MEDIUM

Description

Netcore NR255-V version 1.5.130703 contains a null pointer dereference vulnerability in route_policy_add.cgi caused by a missing exit_port parameter. Attackers can send requests lacking the exit_port field to trigger the null pointer dereference, resulting in a denial of service.

Published
September 15, 2026 10:17 PM
Last Modified
September 15, 2026 10:17 PM
Source
[email protected]

Weaknesses (CWE)

CWE-476

References

Contact Us

Get the CyboWatch SIEM platform, hosting, and 24×7 SOC analysts. Call or email us to get started.