CVE-2026-104628: Satel Netco Design Inefficient Regular Expression Complexity
Satel Netco Design versions prior to v2.1.7 contains an inefficient regular expression complexity vulnerability. An authenticated user with Viewer privileges could submit crafted search input that causes excessive processing, potentially degrading the availability of the application.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Satel Netco Designto a version that resolves this vulnerability.Fixed in 2.1.7
Event History
Frequently Asked Questions
Who can exploit this issue?
An attacker must be authenticated to Satel Netco Design and have Viewer privileges. The attack can be performed remotely by submitting crafted search input.
Which deployments are affected?
Satel Netco Design versions earlier than v2.1.7 are affected. The provided information does not identify any configuration prerequisite beyond access to the application's search functionality.
What is the impact of successful exploitation?
Crafted search input can trigger excessive processing due to inefficient regular-expression complexity. This can degrade application availability; no confidentiality or integrity impact is identified.
What should be done if an affected version is in use?
Upgrade to v2.1.7 or later. If upgrading cannot occur immediately, restrict Viewer-level access to trusted users and monitor or limit potentially abusive search activity where operationally possible.