CVE-2026-36538
Last modified
CVE-2026-36538 is a high-severity vulnerability rated 7.3/10 on the CVSS scale. Netis AC1200 Router NC21 V4.0.1.4296 contains a hard-coded root credential stored in /etc/shadow.sample. The password for the root account is set to the trivially weak value root, allowing an attacker with access to the device to authenticate as root and gain full control of the underlying operating system.. EPSS estimates a 0.31% chance of exploitation in the next 30 days.
Description
Netis AC1200 Router NC21 V4.0.1.4296 contains a hard-coded root credential stored in /etc/shadow.sample. The password for the root account is set to the trivially weak value root, allowing an attacker with access to the device to authenticate as root and gain full control of the underlying operating system.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-36538?
How severe is CVE-2026-36538?
How do I fix CVE-2026-36538?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-36501An issue in the Externalizable.readExternal() component of C…7.5
- CVE-2026-3651The Build App Online plugin for WordPress is vulnerable to u…5.3
- CVE-2026-3652The ARForms plugin for WordPress is vulnerable to Stored Cro…7.2
- CVE-2026-36521PublicCMS V5.202506.d has a Cross Site Scripting (XSS) vulne…6.1
- CVE-2026-3653Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMB…
- CVE-2026-36537ThingsBoard v4.3.0.1 is vulnerable to an authentication bypa…9.8
- CVE-2026-36539Netis AC1200 Router NC21 V4.0.1.4296 exposes a CGI endpoint …7.3
- CVE-2026-36540Netis AC1200 Router NC21 V4.0.1.4296 is vulnerable to unauth…7.3
- CVE-2026-3655The OTP Login With Phone Number, OTP Verification plugin for…9.8
- CVE-2026-3657The My Sticky Bar plugin for WordPress is vulnerable to SQL …7.5
- CVE-2026-36574A DLL hijacking vulnerability in Wassimulator (GitHub) Cactu…7.8
- CVE-2026-36576An OS command injection vulnerability in the app.py componen…9.8
Are you affected by CVE-2026-36538?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
