CVE-2026-76142: Genians, Inc Genian Nac 5.0.75 LTS Release
Critical severity, CVSS 9.3. EPSS: 0.3% chance of exploitation in the next 30 days.
Insufficient authentication and access control on the internal-only IPC SOAP endpoint of the Genian NAC/ZTNA policy server allows an unauthenticated attacker to invoke internal functions
Affected products
- Genians, Inc Genian Nac 5.0.75 LTS Release: from 135823, before 148667 (fixed in 148667)
- Genians, Inc Genian Nac 5.0.85 Release Stable: from 147181, before 148666 (fixed in 148666)
- Genians, Inc Genian Nac 5.0.86 Release: from 148018, before 148665 (fixed in 148665)
- Genians, Inc Genian Ztna 6.0.35 LTS Release: from 135814, before 148672 (fixed in 148672)
- Genians, Inc Genian Ztna 6.0.45 Release Stable: from 147169, before 148671 (fixed in 148671)
- Genians, Inc Genian Ztna 6.0.46 Release: from 148028, before 148670 (fixed in 148670)
Published 2026-10-01. Last modified 2026-10-01.