ZeroHour

CVE-2026-4309

CVSS 4.0
6.3 medium
EPSS
<1%p4
Published
()
Modified
Description

Missing Authorization vulnerability in NEC Platforms, Ltd. Aterm Series allows a attacker to get a specific device information and change the settings via network.

Vendors
nec
Products
aterm wg2600hs firmware, aterm wf1200cr firmware, aterm wg1200cr firmware, aterm wg2600hp4 firmware, aterm wg2600hm4 firmware, aterm wg2600hs2 firmware, aterm wx3000hp firmware, aterm wx3600hp firmware, aterm w1200ex-ms firmware, aterm wg1200hp2 firmware, aterm wg1900hp firmware, aterm wg1200hs2 firmware
Weakness
CWE-862
Vector
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

In the news

No ingested article mentions this CVE yet.