{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/nbr100v2-1.3.240614.030928/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:netcore:nbr100v2:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":10,"id":"CVE-2026-101000"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["NBR100V2 (1.3.240614.030928)"],"_cs_severities":["critical"],"_cs_tags":["vulnerability","network-security","acl-bypass"],"_cs_type":"advisory","_cs_vendors":["Netcore"],"content_html":"\u003cp\u003eA critical missing authorization vulnerability has been identified in the Netcore NBR100V2 router (firmware version 1.3.240614.030928). The vulnerability exists within the ACL Handler component, specifically impacting the 'uci.apply' function. This flaw is rooted in an improperly defined access control list (ACL) within the '/usr/share/rpcd/acl.d/unauthenticated.json' configuration file.\u003c/p\u003e\n\u003cp\u003eThe vulnerability allows remote, unauthenticated attackers to manipulate the 'section' argument, potentially resulting in unauthorized system configuration changes. Given that the exploit has been publicly disclosed and the vendor has not provided a response or a patch, systems running this specific firmware version are at significant risk of unauthorized administrative control. Defenders should prioritize identifying and isolating these devices from external networks.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability allows unauthenticated remote attackers to bypass authorization controls, which can lead to unauthorized modification of router configurations. Given the base CVSS score of 10.0, the potential for total system compromise is high. This affects enterprise and home-office deployments relying on the Netcore NBR100V2 router for network security and traffic management.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImmediately restrict access to the management interface of Netcore NBR100V2 routers to trusted internal IP ranges or VPNs only.\u003c/li\u003e\n\u003cli\u003eDisable remote administrative access on all internet-facing Netcore NBR100V2 devices.\u003c/li\u003e\n\u003cli\u003eMonitor network traffic logs for unusual HTTP POST requests directed at internal ACL handling endpoints or attempts to interact with the 'uci.apply' function.\u003c/li\u003e\n\u003cli\u003eAs no vendor patch is currently available, evaluate replacing the affected hardware or isolating it behind a hardened perimeter gateway.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-28T08:49:12Z","date_published":"2026-09-28T08:49:12Z","id":"https://feed.craftedsignal.io/briefs/2026-09-netcore-acl-bypass/","summary":"An unauthenticated remote authorization bypass vulnerability exists in the Netcore NBR100V2 router, allowing attackers to manipulate system configurations via the ACL Handler component.","title":"Missing Authorization Vulnerability in Netcore NBR100V2","url":"https://feed.craftedsignal.io/briefs/2026-09-netcore-acl-bypass/"}],"language":"en","title":"CraftedSignal Threat Feed - NBR100V2 (1.3.240614.030928)","version":"https://jsonfeed.org/version/1.1"}