CVE-2026-31985
When the upstream Guardian or CMC was configured in the Remote Collector via n2os-tui, the generated configuration disabled TLS certificate verification, and no option was provided to enable it. A malicious actor could perform a man-in-the-middle attack and intercept the communication between the Remote Collector and the Guardian or CMC. This could result in theft of the sync token, impersonation of the server, injection of spoofed data (such as false asset information or vulnerabilities) into the Guardian or CMC, or disruption of the data flow between the Remote Collector and the Guardian or CMC.
Scoring
- Severity
- HIGH
- CVSS base score
- 8.3
- CVSS vector
- CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:H/VA:L/SC:L/SI:L/SA:N
- EPSS probability
- 0.20%
- CWE
- CWE-671
- Published
- 2026-07-09
- Last modified
- 2026-07-09
Affected products
- Nozomi Networks Remote Collector
Weakness type
Related vulnerabilities
- CVE-2026-33389 — Disabled and non-configurable certificate/host key validation in Smart Polling in Guardian/CMC before 26.3.0 and Arc before v2.7.0
- CVE-2025-24024 — Mjolnir v1.9.0 accepts commands from any room
- CVE-2023-20115 — A vulnerability in the SFTP server implementation for Cisco Nexus 3000 Series Switches and 9000...
- CVE-2022-29163 — Bypass of password requirements when sharing a folder via the Circles app in Nextcloud Server
- CVE-2018-13283 — Lack of administrator control over security vulnerability in client.cgi in Synology SSL VPN Client...