CVE-2026-36174

Medium severity, CVSS 4.6. EPSS: 0.2% chance of exploitation in the next 30 days.

GNCC GP5 v7.1.76 was discovered to store sensitive wireless network information in plaintext during routine operations to the serial console. This issue allows physically-proximate attackers to obtain sensitive information, including network credentials, via monitoring the serial UART interface.

Published 2026-06-04. Last modified 2026-07-22.