CVE-2026-31849

Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 does not implement CSRF protections on state-changing endpoints such as /goform/setSysTools and other administrative interfaces. As a result, an attacker can craft malicious web requests that are executed in the context of an authenticated administrator’s browser, leading to unauthorized configuration changes, including enabling services or modifying system settings.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:nexxtsolutions:nebula300plus_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:nexxtsolutions:nebula300plus:-:*:*:*:*:*:*:*

History

29 Apr 2026, 17:43

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
CPE cpe:2.3:o:nexxtsolutions:nebula300plus_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:nexxtsolutions:nebula300plus:-:*:*:*:*:*:*:*
References () https://nexxt-connectivity-frontend.s3.amazonaws.com/media/docs/Nebula300+_v12.01.01.37.zip - () https://nexxt-connectivity-frontend.s3.amazonaws.com/media/docs/Nebula300+_v12.01.01.37.zip - Product
References () https://www.nexxtsolutions.com/connectivity/internal-products/ARN02304U6/ - () https://www.nexxtsolutions.com/connectivity/internal-products/ARN02304U6/ - Product
First Time Nexxtsolutions nebula300plus Firmware
Nexxtsolutions
Nexxtsolutions nebula300plus

26 Mar 2026, 11:16

Type Values Removed Values Added
Summary
  • (es) El firmware de Nexxt Solutions Nebula 300+ hasta la versión 12.01.01.37 no implementa protecciones CSRF en los endpoints administrativos que cambian el estado. Un atacante remoto puede inducir a un administrador autenticado a enviar solicitudes manipuladas que modifican la configuración del dispositivo, incluyendo la configuración relevante para la seguridad, sin la intención del administrador.
Summary (en) Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 does not implement CSRF protections on state-changing administrative endpoints. A remote attacker can induce an authenticated administrator to submit crafted requests that modify device settings, including security-relevant configuration, without the administrator's intent. (en) Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 does not implement CSRF protections on state-changing endpoints such as /goform/setSysTools and other administrative interfaces. As a result, an attacker can craft malicious web requests that are executed in the context of an authenticated administrator’s browser, leading to unauthorized configuration changes, including enabling services or modifying system settings.

23 Mar 2026, 13:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-23 13:16

Updated : 2026-04-29 17:43


NVD link : CVE-2026-31849

Mitre link : CVE-2026-31849

CVE.ORG link : CVE-2026-31849


JSON object : View

Products Affected

nexxtsolutions

  • nebula300plus
  • nebula300plus_firmware
CWE
CWE-352

Cross-Site Request Forgery (CSRF)