Technology · Netcore
Netcore NR255-V vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 23 vulnerabilities in Netcore NR255-V: 0 in the last 7 days and 23 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-92257, was published on 15 September 2026.
- Last 7 days
- 0
- Last 90 days
- 23
- Critical, all time
- 0
- Exploited in the wild
- 0
Latest Netcore NR255-V vulnerabilities
- CVE-2026-92257: Netcore NR255-V stored cross-site scripting in L7 content managementmediumCVSS 5.4EPSS 0.2%
- CVE-2026-92256: Netcore NR255-V sensitive information disclosure in VPN configuration handlersmediumCVSS 6.5EPSS 0.4%
- CVE-2026-92255: Netcore NR255-V out-of-bounds read in filter_arp_put_file.cgimediumCVSS 5.4EPSS 0.4%
- CVE-2026-76873: Netcore NR255-V stored cross-site scripting in DHCP and ARP hostname fieldsmediumCVSS 5.2EPSS 0.2%
- CVE-2026-76872: Netcore NR255-V stored cross-site scripting in DHCP and ACL managementmediumCVSS 5.4EPSS 0.2%
- CVE-2026-76871: Netcore NR255-V credential disclosure in VPN componentsmediumCVSS 6.5EPSS 0.4%
- CVE-2026-76870: Netcore NR255-V out-of-bounds read in firmware upload validationhighCVSS 7.1EPSS 0.4%
- CVE-2026-76869: Netcore NR255-V stack-based buffer overflow in reboot_timer_set.cgihighCVSS 7.2EPSS 0.6%
- CVE-2026-76868: Netcore NR255-V null pointer dereference in route_policy_add.cgimediumCVSS 4.9EPSS 0.5%
- CVE-2026-76867: Netcore NR255-V stored XSS in routing and NAT configurationmediumCVSS 5.4EPSS 0.2%
- CVE-2026-76866: Netcore NR255-V OS command argument injection in DDNShighCVSS 7.2EPSS 0.6%
- CVE-2026-76865: Netcore NR255-V null pointer dereference in QoS handlersmediumCVSS 4.9EPSS 0.5%
- CVE-2026-76864: Netcore NR255-V stored XSS in QoS rule handlersmediumCVSS 4.8EPSS 0.3%
- CVE-2026-76863: Netcore NR255-V privilege escalation in QoS bandwidth routesmediumCVSS 4.3EPSS 0.3%
- CVE-2026-76862: Netcore NR255-V OS command argument injection in tcpdumphighCVSS 8.8EPSS 0.5%
- CVE-2026-76861: Netcore NR255-V stack buffer overflow in ntools_tcpdump_start_set.cgihighCVSS 8.8EPSS 0.7%
- CVE-2026-76860: Netcore NR255-V stack-based buffer overflow in wake_up_set.cgihighCVSS 8.8EPSS 0.5%
- CVE-2026-76859: Netcore NR255-V sensitive information disclosure in user_pass_show.cgimediumCVSS 6.5EPSS 0.4%
- CVE-2026-76858: Netcore NR255-V stored cross-site scripting in ddns_wan_list_show.cgimediumCVSS 4.8EPSS 0.3%
- CVE-2026-76857: Netcore NR255-V plaintext DDNS credential disclosuremediumCVSS 6.5EPSS 0.4%
- CVE-2026-76856: Netcore NR255-V cross-site request forgery in network configuration endpointshighCVSS 8.1EPSS 0.2%
- CVE-2026-76855: Netcore NR255-V sensitive information disclosure in audit endpointsmediumCVSS 6.5EPSS 0.4%
- CVE-2026-76854: Netcore NR255-V sensitive information disclosure in l7_web_auth_user_show.cgimediumCVSS 6.5EPSS 0.4%
Most severe Netcore NR255-V vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2026-76861: Netcore NR255-V stack buffer overflow in ntools_tcpdump_start_set.cgihighCVSS 8.8EPSS 0.7%
- CVE-2026-76862: Netcore NR255-V OS command argument injection in tcpdumphighCVSS 8.8EPSS 0.5%
- CVE-2026-76860: Netcore NR255-V stack-based buffer overflow in wake_up_set.cgihighCVSS 8.8EPSS 0.5%
- CVE-2026-76856: Netcore NR255-V cross-site request forgery in network configuration endpointshighCVSS 8.1EPSS 0.2%
- CVE-2026-76869: Netcore NR255-V stack-based buffer overflow in reboot_timer_set.cgihighCVSS 7.2EPSS 0.6%
- CVE-2026-76866: Netcore NR255-V OS command argument injection in DDNShighCVSS 7.2EPSS 0.6%
- CVE-2026-76870: Netcore NR255-V out-of-bounds read in firmware upload validationhighCVSS 7.1EPSS 0.4%
- CVE-2026-76855: Netcore NR255-V sensitive information disclosure in audit endpointsmediumCVSS 6.5EPSS 0.4%
- CVE-2026-76854: Netcore NR255-V sensitive information disclosure in l7_web_auth_user_show.cgimediumCVSS 6.5EPSS 0.4%
- CVE-2026-92256: Netcore NR255-V sensitive information disclosure in VPN configuration handlersmediumCVSS 6.5EPSS 0.4%
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 0 | 0 | |
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 0 | 0 | |
| 27 Jul 2026 | 0 | 0 | |
| 3 Aug 2026 | 0 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 0 | 0 | |
| 31 Aug 2026 | 0 | 0 | |
| 7 Sep 2026 | 0 | 0 | |
| 14 Sep 2026 | 23 | 0 | |
| 21 Sep 2026 | 0 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/technologies/nr255-v.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Netcore NR255-V vulnerabilities", https://junglewise.ai/threats/technologies/nr255-v, 26 September 2026.