CVE-2026-76144: Genians, Inc Genian SSL PNS Unrestricted File Upload
An unrestricted file upload vulnerability caused by insufficient file extension and integrity verification in Genian SSL PNS allows an attacker to upload a dangerous file that is not an official patch
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Genian SSL PNS frodo-core and watchcat-uito a version that resolves this vulnerability.Fixed in 5.0.0
Event History
Frequently Asked Questions
What level of access and conditions are required to exploit this issue?
The CVSS vector indicates that exploitation is local, requires high privileges, has high attack complexity, and depends on additional preconditions. No user interaction is required.
What is the expected security impact?
The reported impact is limited to integrity of the vulnerable component; confidentiality and availability impacts are listed as none. The vulnerability may allow upload of a dangerous file that is not an official patch.