CVE-2026-30480

A Local File Inclusion (LFI) vulnerability in the NFSen module (nfsen.inc.php) of LibreNMS 22.11.0-23-gd091788f2 allows authenticated attackers to include arbitrary PHP files from the server filesystem via path traversal sequences in the nfsen parameter.
Configurations

No configuration.

History

No history.

Information

Published : 2026-04-14 15:16

Updated : 2026-06-17 10:32


NVD link : CVE-2026-30480

Mitre link : CVE-2026-30480

CVE.ORG link : CVE-2026-30480


JSON object : View

Products Affected

No product.

CWE
CWE-98

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')