CVE-2026-12211: Intelbras iNVU 7016 FT Web syslog path traversal

Published Jun 15, 2026
·
Updated

A flaw has been found in Intelbras iNVU 7016 FT 3.004.00IB000.0.T Build 2025-09-26. This impacts an unknown function of the file /RPC2Loadfile/syslog/ of the component Web Interface. Executing a manipulation can lead to path traversal. The attack can be launched remotely. The exploit has been published and may be used. It is recommended to upgrade the affected component. The vendor was contacted early, responded in a very professional manner and quickly released a fixed version of the affected product.

Affected Software

1 affected component
Intelbras iNVU 7016 FT=3.004.00IB000.0.T Build 2025-09-26

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade Intelbras iNVU 7016 FT to a version that resolves this vulnerability.

    Fixed in 3.004.00IB000.0.T Build 2025-09-26
  2. Compensating control

    Since the attack can be launched remotely, restrict network access to the iNVU 7016 FT Web interface (including the Web syslog functionality) to only trusted sources (e.g., via firewall/ACL).

Event History

Jun 15, 2026
CVE Published
via MITRE·02:45 AM
Data Sourced
via MITRE·02:45 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:16 AM
DescriptionSeverityWeakness

Frequently Asked Questions

1

What is the severity of CVE-2026-12211?

The severity of CVE-2026-12211 is classified as low.

2

How do I fix CVE-2026-12211?

To fix CVE-2026-12211, apply any available firmware updates from Intelbras for the iNVU 7016 FT device.

3

What impact does CVE-2026-12211 have on the Intelbras iNVU 7016 FT?

CVE-2026-12211 allows for path traversal vulnerabilities through the web interface, which may compromise file access.

4

Can CVE-2026-12211 be exploited remotely?

Yes, CVE-2026-12211 can be exploited remotely, allowing attackers to execute the path traversal attack.

5

What component of Intelbras iNVU 7016 FT is affected by CVE-2026-12211?

CVE-2026-12211 affects the web interface component of the Intelbras iNVU 7016 FT.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203