CVE-2026-76861

Netcore NR255-V version 1.5.130703 contains a stack-based buffer overflow in ntools_tcpdump_start_set.cgi caused by an unsized sprintf call when processing form values. An attacker can submit crafted input to this cgi endpoint to overflow the stack buffer and potentially execute arbitrary code.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-15 22:17

Updated : 2026-09-15 22:17


NVD link : CVE-2026-76861

Mitre link : CVE-2026-76861

CVE.ORG link : CVE-2026-76861


JSON object : View

Products Affected

No product.

CWE
CWE-121

Stack-based Buffer Overflow