PT-2026-46243 · Gncc · Gp5

·

CVE-2026-36174

·

Published

2026-06-04

·

Updated

2026-06-04

CVSS v3.1

4.6

Medium

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions GNCC GP5 version 7.1.76
Description Sensitive wireless network information, including network credentials, is stored in plaintext and exposed to the serial console during routine operations. This allows attackers with physical proximity to the device to obtain this sensitive data by monitoring the serial UART interface (Universal Asynchronous Receiver-Transmitter), which is a hardware communication protocol used for serial communication.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-36174

Affected Products

Gp5