CVE-2026-4621
Hidden Functionality vulnerability in NEC Platforms, Ltd. Aterm Series allows a attacker to enable telnet via network.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 6.3
- CVSS vector
- CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N
- EPSS probability
- 0.16%
- CWE
- CWE-912
- Published
- 2026-03-27
- Last modified
- 2026-04-10
Affected products
- NEC Platforms, Ltd. Aterm W1200EX(-MS)
- NEC Platforms, Ltd. Aterm WG1200HP2
- NEC Platforms, Ltd. Aterm WG1900HP
- NEC Platforms, Ltd. Aterm WG1200HS2
- NEC Platforms, Ltd. Aterm WG1800HP3
- NEC Platforms, Ltd. Aterm WG1200HP3
- NEC Platforms, Ltd. Aterm WG1900HP2
- NEC Platforms, Ltd. Aterm WG1200HS3
Weakness type
Related vulnerabilities
- CVE-2026-18844 — Pulsetto Vagus Nerve Stimulator Hidden Functionality
- CVE-2026-61515 — Puwell IP Camera 2.x - 4.x Unauthenticated Command Injection via DebugShell
- CVE-2026-18191 — Vacron|IP Camera - Hidden Functionality
- CVE-2026-4769 — Unauthenticated Access to Internal Diagnostic Interface
- CVE-2026-7413 — Persistent undocumented backdoor access in Yarbo robot
- CVE-2026-41446 — WattBox 800 & 820 Series < 2.10.0.0 RCE via Diagnostic Endpoints
- CVE-2026-1952 — Denial of service via the undocumented subfunction in AS320T
- CVE-2026-34769 — Electron: Renderer command-line switch injection via undocumented commandLineSwitches webPreference