Back to overview

CVE-2026-12211

LOW Exploitation: PoC
2.7
CVSS 3.1
Description
A flaw has been found in Intelbras iNVU 7016 FT 3.004.00IB000.0.T Build 2025-09-26. This impacts an unknown function of the file /RPC2_Loadfile/syslog/ of the component Web Interface. Executing a manipulation can lead to path traversal. The attack can be launched remotely. The exploit has been published and may be used. It is recommended to upgrade the affected component. The vendor was contacted early, responded in a very professional manner and quickly released a fixed version of the affected product.

Metadata

CVE ID
CVE-2026-12211
State
PUBLISHED
Assigner
VulDB
Reserved
2026-06-14 12:32 UTC
Published
2026-06-15 02:45 UTC
Last updated
2026-06-15 10:34 UTC
Primary CWE
CWE-22
Path Traversal
Vendor / Product
Intelbras / iNVU 7016 FT
Sources
cve.org  ·  NVD

Severity & Metrics

2.7 LOW CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N/E:P/RL:O/RC:C
SSVC — CISA Coordinator
Exploitation
PoC
Automatable
no
Tech. Impact
partial
Affected products (1)
VendorProductPlatformVersions
Intelbras iNVU 7016 FT 3.004.00IB000.0.T Build 2025-09-26
Weakness (CWE)
CWESourceDescription
CWE-22 cna Path Traversal
CVSS scores (4)
ScoreSeverityVersionSourceVector
5.1 MEDIUM 4.0 cna CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P
3.3 N/D 2.0 cna AV:N/AC:L/Au:M/C:P/I:N/A:N/E:POC/RL:OF/RC:C
2.7 LOW 3.1 cna CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N/E:P/RL:O/RC:C
2.7 LOW 3.0 cna CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N/E:P/RL:O/RC:C
References (6)
Back to overview