# CVE-2026-61516

## Summary

- **CVE ID:** CVE-2026-61516
- **Severity:** CRITICAL
- **CVSS Score:** 9.8 (CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N)
- **CWE:** CWE-522
- **Published:** Sep 8, 2026
- **Last Modified:** Sep 8, 2026

## Description

Netis NX10 firmware V4.0.1.5808 and V3.0.0.4142 contain an information disclosure vulnerability that allows unauthenticated attackers to retrieve the administrator password by sending a request to the sysinfo action in the web management interface without a valid session. Attackers can replay the exposed credential against the login handler to establish a fully authenticated administrator session on the device.

## Affected Products

- Netis Systems — NX10 (4.0.1.5808)
- Netis Systems — NX10 (3.0.0.4142)

## References

- [CNA](https://hackwithmike.com/research/netis/2026-09)
- [CNA](https://hackwithmike.com/research/advisories/netis/cve-2026-61516)
- [CNA](https://www.netis-systems.com/products/NX10.html)
- [CNA](https://www.vulncheck.com/advisories/netis-nx10-credential-disclosure-via-sysinfo-diagnostic-endpoint)

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._