LibreNMS versions before 26.3.0 are affected by an authenticated remote code execution vulnerability by abusing the Binary Locations config and the Netcommand feature. Successful exploitation requires administrative privileges. Exploitation could result in compromise of the underlying web server.
Metrics
Affected Vendors & Products
References
History
Mon, 13 Apr 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | LibreNMS versions before 26.3.0 are affected by an authenticated remote code execution vulnerability by abusing the Binary Locations config and the Netcommand feature. Successful exploitation requires administrative privileges. Exploitation could result in compromise of the underlying web server. | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: PRJBLK
Published:
Updated: 2026-04-13T10:56:16.850Z
Reserved: 2026-04-13T10:42:58.812Z
Link: CVE-2026-6204
No data.
Status : Received
Published: 2026-04-13T11:16:06.243
Modified: 2026-04-13T11:16:06.243
Link: CVE-2026-6204
No data.
OpenCVE Enrichment
No data.