# CVE-2026-1814

## Summary

- **CVE ID:** CVE-2026-1814
- **Severity:** MEDIUM
- **CVSS Score:** 6.8 (CVSS:4.0/AV:L/AC:H/AT:N/PR:H/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N)
- **CWE:** CWE-331
- **Published:** Feb 3, 2026
- **Last Modified:** Mar 12, 2026

## Description

Rapid7 Nexpose versions 6.4.50 and later are vulnerable to an insufficient entropy issue in the CredentialsKeyStorePassword.generateRandomPassword() method. When updating legacy keystore passwords, the application generates a new password with insufficient length (7-12 characters) and a static prefix 'p', resulting in a weak keyspace. An attacker with access to the nsc.ks file can brute-force this password using consumer-grade hardware to decrypt stored credentials.

## Affected Products

- Rapid7 — InsightVM/Nexpose (6.4.50)

## References

- [CNA](https://www.atredis.com/disclosure)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.15%
- **EPSS Percentile:** 4.6

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._