PT-2026-46263 · Neterbit · Nw-431F Router
CVE-2025-67446
·
Published
2026-06-04
·
Updated
2026-06-05
CVSS v3.1
9.8
Critical
| Vector | AC:L/AV:N/A:H/C:H/I:H/PR:N/S:U/UI:N |
Name of the Vulnerable Software and Affected Versions
Neterbit NW-431F Router versions prior to 20241014-IR03
Description
Improper Authentication allows for an authentication bypass due to the use of weak and predictable cookie values. An attacker can gain unauthorized access to administrative functionalities by modifying the cookie value, such as setting it to
admin.Recommendations
Update the router to a version released after 20241014-IR03.
Exploit
Fix
Session Fixation
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Nw-431F Router