Junglewise Threat Intelligence

CVE-2026-31846: Nexxt Solutions Nebula 300+ missing authentication in /goform/ate

CVE-2026-31846 · Severity: medium · CVSS 6.5 · Published 2026-03-23

Executive brief

The Nexxt Solutions Nebula 300+ is a wireless router used for home and small office networking. A security flaw allows an attacker on the same local network to bypass security checks and view the administrator's password. This allows the attacker to take full control of the router, potentially leading to network eavesdropping or unauthorized configuration changes.

Technical details

A missing authentication vulnerability (CWE-306) exists in the /goform/ate endpoint of the Nexxt Solutions Nebula 300+ router firmware. An unauthenticated attacker located on the adjacent network (e.g., the same Wi-Fi or LAN) can send a crafted HTTP request to this endpoint to receive a raw response containing sensitive device parameters. One of these parameters, 'Login_PW', contains the administrator password in Base64-encoded format. By decoding this string, the attacker gains full administrative access to the device's web interface. This vulnerability affects firmware versions up to and including 12.01.01.37.

Affected products

  • Nexxt Solutions Nebula 300+ firmware through 12.01.01.37

Timeline

  • 2026-03-23: disclosed
  • 2026-03-23: advisory

References