An authentication bypass vulnerability exists in certain releases of Ciena Navigator Network Control Suite (NCS), Manage Control Plan (MCP), and Blue Planet products. The issue is caused by improper handling of HTTP request paths and headers, which allows an unauthenticated attacker to manipulate requests in a manner that bypasses authentication and associated audit logging controls.
References
| Link | Resource |
|---|---|
| https://www.ciena.com/product-security |
Configurations
No configuration.
History
No history.
Information
Published : 2026-07-14 23:17
Updated : 2026-07-15 20:08
NVD link : CVE-2026-5270
Mitre link : CVE-2026-5270
CVE.ORG link : CVE-2026-5270
JSON object : View
Products Affected
No product.
CWE
CWE-287
Improper Authentication
