CVE-2026-40854 | WNC T-Mobile 5G Box IDU prior 1.1.0.651412 portal.cgi sessionid improper authorization

SecurityVulns

A vulnerability, which was classified as very critical, has been found in WNC T-Mobile 5G Box IDU. Impacted is an unknown function of the file portal.cgi. The manipulation of the argument sessionid leads to improper authorization.

This vulnerability is uniquely identified as CVE-2026-40854. The attack is possible to be carried out remotely. No exploit exists.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More