WNC T-Mobile 5G Box IDU router contains an authentication bypass vulnerability in the portal.cgi component. The session verification mechanism improperly validates the sessionid cookie by checking for the existence of a corresponding file in /tmp/login_user. An attacker can bypass authentication by using directory entries such as "." or ".." in the cookie, allowing unauthorized access to the administration panel.This issue has been fixed in firmware versionĀ 1.1.0.651412
CVSS
No CVSS.
References
| Link | Resource |
|---|---|
| https://cert.pl/posts/2026/09/CVE-2026-40854 |
Configurations
No configuration.
History
16 Sep 2026, 12:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-09-16 12:17
Updated : 2026-09-16 12:17
NVD link : CVE-2026-40854
Mitre link : CVE-2026-40854
CVE.ORG link : CVE-2026-40854
JSON object : View
Products Affected
No product.
CWE
CWE-290
Authentication Bypass by Spoofing
