GHSA-p567-rmrg-wwq4HighCVSS 7.1

No authentication is required when updating firmware or bootloader, making it easy for malicious...

Published
October 9, 2026
Last Modified
October 9, 2026

🔗 CVE IDs covered (1)

📋 Description

No authentication is required when updating firmware or bootloader, making it easy for malicious files to be pushed to the device. Additionally, anyone with the same software can scan a network for N-Tron devices and push/pull firmware without authenticating by using SNMP/TFTP.

🔗 References (6)