MEDIUM
CVE-2026-92255
CVSS
5.4
Description
Netcore NR255-V version 1.5.130703 contains an out-of-bounds read vulnerability in filter_arp_put_file.cgi caused by improper use of a string handling API. Attackers can trigger an unterminated buffer over-read by exploiting this flaw in the affected component, potentially exposing adjacent memory contents.
Weakness (CWE)
CWE-125
Out-of-bounds Read
EPSS Score
0.27%
Probability of exploitation in next 30 days
19.3th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.