CVE-2026-108578 PUBLISHED

Neterbit NW-431F Embedded Web Server sms.json information disclosure

Assigner: VulDB
Reserved: 10.10.2026 Published: 11.10.2026 Updated: 11.10.2026

A vulnerability was identified in Neterbit NW-431F 20250715. Impacted is an unknown function of the file /sms.json of the component Embedded Web Server. Such manipulation leads to information disclosure. The attack may be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X
CVSS Score: 6.9

Product Status

Vendor Neterbit
Product NW-431F
Versions
  • Version 20250715 is affected

Credits

  • libssl (VulDB User) reporter
  • VulDB CNA Team coordinator

References

Problem Types

  • Information Disclosure CWE
  • Improper Access Controls CWE