CVE-2026-101076 | Netcore NR289-GE 1.4.5102 CGI /set_ntp_server_ip.cgi system ntp_ip os command injection

SecurityVulns

A vulnerability was found in Netcore NR289-GE 1.4.5102 and classified as very critical. This affects the function system of the file /set_ntp_server_ip.cgi of the component CGI Handler. The manipulation of the argument ntp_ip results in os command injection.

This vulnerability is identified as CVE-2026-101076. The attack can be executed remotely. Additionally, an exploit exists.

The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More