CVE-2018-11741: Nec Univerge SV9100 Webpro Firmware

Critical severity, CVSS 9.8. EPSS: 17.9% chance of exploitation in the next 30 days.

NEC Univerge Sv9100 WebPro 6.00.00 devices have Predictable Session IDs that result in Account Information Disclosure via Home.htm?sessionId=#####&GOTO(8) URIs.

Affected products

  • Nec Univerge SV9100 Webpro Firmware: version 6.00.00 only

Published 2018-12-26. Last modified 2026-06-17.