An OS command injection vulnerability in Genian SSL PNS allows an attacker who knows only the client access ID, without the password, to execute arbitrary commands remotely
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
Update Genian SSL PNS (xenics_auther) to version 1.0.1.
Workaround
No workaround given by the vendor.
References
History
Thu, 01 Oct 2026 05:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An OS command injection vulnerability in Genian SSL PNS allows an attacker who knows only the client access ID, without the password, to execute arbitrary commands remotely | |
| Title | Genians, Inc Genian SSL PNS OS Command Injection | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: krcert
Published:
Updated: 2026-10-01T04:53:39.063Z
Reserved: 2026-08-19T04:13:00.870Z
Link: CVE-2026-76146
No data.
Status : Received
Published: 2026-10-01T05:17:09.783
Modified: 2026-10-01T05:17:09.783
Link: CVE-2026-76146
No data.
OpenCVE Enrichment
Updated: 2026-10-01T07:15:04Z
Weaknesses