Executive brief
Limatek LimRAD NAC, a network access control solution used to manage and secure device connections to corporate networks, contains a critical security flaw. An attacker can upload malicious files to the system without any authentication, allowing them to take complete control of the appliance. This could lead to a total service outage, theft of sensitive network credentials, or a foothold for further attacks within the internal network.
Technical details
A critical vulnerability (CWE-434) exists in Limatek LimRAD NAC due to the unrestricted upload of files with dangerous types. The flaw allows a remote, unauthenticated attacker to upload arbitrary files, such as web shells, to the server. Because the application fails to properly validate file extensions or content, these files can be executed by the server, leading to Remote Code Execution (RCE). This issue is resolved in version 5.5.7.3.9. The attack vector is network-based with low complexity and requires no user interaction or prior privileges.
Affected products
- Limatek System Inc. LimRAD NAC before 5.5.7.3.9
Timeline
- 2026-06-11: advisory: Advisory published by TR-CERT and NVD