CVE-2026-45432: Gx India Gx Earth 1010

High severity, CVSS 8.7. EPSS: 0.4% chance of exploitation in the next 30 days.

This vulnerability exists in GX Earth ONT models due to the transmission of user credentials in plaintext over HTTP in its web management interface. A remote attacker could exploit this vulnerability by intercepting network traffic to obtain sensitive authentication information, which could lead to unauthorized access to the targeted device.

Affected products

  • Gx India Gx Earth 1010: version E1010-1.1ASL only
  • Gx India Gx Earth 2022: version E2022 - 3.1.2A only; version E2022 - 3.1.5AV only; version E2022 - 1.1ASL only

Published 2026-06-04. Last modified 2026-07-22.