CVE-2026-101075

LOWCVSS 9.3 · CRITICAL

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A security vulnerability has been detected in Netcore NR289-GE 1.4.5102. The impacted element is the function system of the file /location_time.cgi of the component Location Time Handler. The manipulation of the argument mac leads to os command injection. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-77CWE-78

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-09-29: 309-29
Referenced assets1 URL
By indicator
Full discourse3 posts
  • ExploitGrid@exploitgrid

    ├ CVE-2026-101075 — Netcore NR289-GE · OS command injection (location_time.cgi) └ CVE-2026-101039 — FAST FAC1900R · Stack-based overflow

    1000035
    226 followersView on X
  • ExploitGrid@exploitgrid

    [CVE] CVE-2026-101075 [HIGH PRIORITY] CVSS: 10 | Vendor: #Netcore #Netcore NR289-GE Location Time location_time.cgi system os command injection 🔗 https://exploitgrid.net/cve/CVE-2026-101075

    1000021
    226 followersView on X
  • ExploitGrid@exploitgrid

    #ExploitGrid Daily #Digest 🚨 Top CVEs: CVE-2026-101000 (CVSS: 10) Netcore CVE-2026-101001 (CVSS: 10) Netcore CVE-2026-101039 (CVSS: 10) #Fast CVE-2026-101072 (CVSS: 10) Netcore CVE-2026-101075 (CVSS: 10) #Netcore ..🧵👇

    1000044
    226 followersView on X

Explore more