CVE-2026-2624
Last modified
CVE-2026-2624 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. Missing Authentication for Critical Function vulnerability in ePati Cyber Security Technologies Inc. Antikor Next Generation Firewall (NGFW) allows Authentication Bypass. This issue affects Antikor Next Generation Firewall (NGFW): from v.2.0.1298 before v.2.0.1301.. EPSS estimates a 2.19% chance of exploitation in the next 30 days.
Description
Missing Authentication for Critical Function vulnerability in ePati Cyber Security Technologies Inc. Antikor Next Generation Firewall (NGFW) allows Authentication Bypass. This issue affects Antikor Next Generation Firewall (NGFW): from v.2.0.1298 before v.2.0.1301.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Epati | Antikor Next Generation Firewall | >= 2.0.1298, < 2.0.1301 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2026-2624?
How severe is CVE-2026-2624?
How do I fix CVE-2026-2624?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-26233Mattermost versions 11.4.x <= 11.4.0, 11.3.x <= 11.3.1, 11.2…6.5
- CVE-2026-26234JUNG Smart Visu Server 1.1.1050 contains a request header ma…8.8
- CVE-2026-26235JUNG Smart Visu Server 1.1.1050 contains a denial of service…8.7
- CVE-2026-26236A missing authorization vulnerability has been reported to a…7.5
- CVE-2026-26237A missing authorization vulnerability has been reported to a…7.5
- CVE-2026-26239A buffer overflow vulnerability has been reported to affect …8.1
- CVE-2026-26240A buffer overflow vulnerability has been reported to affect …9.1
- CVE-2026-26241A buffer overflow vulnerability has been reported to affect …9.1
- CVE-2026-26246Mattermost versions 11.3.x <= 11.3.0, 11.2.x <= 11.2.2, 10.1…4.3
- CVE-2026-26247Gitea versions before 1.25.5 do not persist the OAuth2 PKCE …9.1
- CVE-2026-26249Rejected reason: Not used
- CVE-2026-2625A flaw was found in rust-rpm-sequoia. An attacker can exploi…5.5
Are you affected by CVE-2026-2624?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
