Description
A weakness has been identified in Netcore NBR200V2 1.3.241127.071246. Impacted is the function wan_config_set_vlan of the file /usr/bin/routerd of the component WAN VLAN Reconfiguration. Executing a manipulation of the argument vlan_wanX.ports can lead to buffer overflow. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Published: 2026-09-21
Score: 9.4 Critical
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution
Action: Patch ASAP
AI Analysis

Impact

A buffer overflow is present in the wan_config_set_vlan function of the /usr/bin/routerd daemon, triggered by manipulating the vlan_wanX.ports argument. This flaw, a CWE-119 and CWE-120 type buffer overflow, can allow an attacker to corrupt memory and potentially execute arbitrary code with the privileges of the routerd process.

Affected Systems

The vulnerability affects Netcore NBR200V2 model firmware version 1.3.241127.071246. No other versions or products are listed as affected.

Risk and Exploitability

The CVSS score of 9.4 marks this issue as critical. Although the EPSS score is not publicly available and the vulnerability is not yet listed in CISA KEV, the exploit is publicly available and can be launched from remote locations. The combination of a high severity rating, remote attack vector, and public exploit availability results in a high likelihood of exploitation and significant risk to affected systems.

Generated by OpenCVE AI on September 21, 2026 at 01:36 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply any vendor-released firmware upgrade that addresses this buffer overflow
  • Restrict external access to the routerd service by configuring firewall rules or disabling WAN VLAN Reconfiguration if not required
  • If a firmware update is not immediately available, monitor Netcore’s plan a phased deployment once available

Generated by OpenCVE AI on September 21, 2026 at 01:36 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 21 Sep 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 21 Sep 2026 00:45:00 +0000

Type Values Removed Values Added
Description A weakness has been identified in Netcore NBR200V2 1.3.241127.071246. Impacted is the function wan_config_set_vlan of the file /usr/bin/routerd of the component WAN VLAN Reconfiguration. Executing a manipulation of the argument vlan_wanX.ports can lead to buffer overflow. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Title Netcore NBR200V2 WAN VLAN Reconfiguration routerd wan_config_set_vlan buffer overflow
First Time appeared Netcore
Netcore nbr200v2
Weaknesses CWE-119
CWE-120
CPEs cpe:2.3:a:netcore:nbr200v2:*:*:*:*:*:*:*:*
Vendors & Products Netcore
Netcore nbr200v2
References
Metrics cvssV2_0

{'score': 9, 'vector': 'AV:N/AC:L/Au:S/C:C/I:C/A:C/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 9.9, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 9.9, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 9.4, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P'}


Subscriptions

Netcore Nbr200v2
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-09-21T19:35:44.379Z

Reserved: 2026-09-20T09:19:12.571Z

Link: CVE-2026-94100

cve-icon Vulnrichment

Updated: 2026-09-21T19:35:40.467Z

cve-icon NVD

Status : Deferred

Published: 2026-09-21T01:16:30.170

Modified: 2026-09-21T20:17:40.660

Link: CVE-2026-94100

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-21T02:00:08Z

Weaknesses
  • CWE-119

    Improper Restriction of Operations within the Bounds of a Memory Buffer

  • CWE-120

    Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')