Impact
A missing authentication flaw exists in the SSH keys synchronization endpoint of Nozomi Networks’ CMC Guardian products. Based on the description, it is inferred that an unauthenticated attacker who can reach the web‑management interface can send a request to this endpoint and retrieve a list of users who have uploaded public SSH keys, the groups those users belong to, and the public key data itself. The disclosed information includes usernames, group memberships, and key material, exposing sensitive configuration details.
Affected Systems
The vulnerability affects Nozomi Networks CMC and Guardian running a version earlier than 26.2.0. Deployments using these products should confirm their version and determine whether the endpoint is exposed to potential attackers.
Risk and Exploitability
The CVSS score of 6.9 indicates moderate severity, while the EPSS score of <1% suggests a very low probability of exploitation at this time. The vulnerability is not listed in the CISA KEV catalog. Based on the description, the likely attack vector is an attacker who can reach the web‑management interface; reaching the synchronization endpoint is sufficient to exploit the flaw due to lack of authentication.
OpenCVE Enrichment