CVE-2026-76147: Genians, Inc Genian Nac 4.0.175 Release

Medium severity, CVSS 5.9. EPSS: 0.4% chance of exploitation in the next 30 days.

A path traversal (ZIP Slip) vulnerability caused by insufficient authorization and integrity verification in the agent upgrade feature of Genian NAC/ZTNA allows a remote attacker to execute arbitrary code

Affected products

  • Genians, Inc Genian Nac 4.0.175 Release: before 148817 (fixed in 148817)
  • Genians, Inc Genian Nac 5.0.65 LTS Release: before 148816 (fixed in 148816)
  • Genians, Inc Genian Nac 5.0.75 LTS Release: before 148815 (fixed in 148815)
  • Genians, Inc Genian Nac 5.0.85 Release Stable: before 148814 (fixed in 148814)
  • Genians, Inc Genian Nac 5.0.86 Release: before 148813 (fixed in 148813)
  • Genians, Inc Genian Ztna 6.0.26 LTS Release: before 148811 (fixed in 148811)
  • Genians, Inc Genian Ztna 6.0.35 LTS Release: before 148810 (fixed in 148810)
  • Genians, Inc Genian Ztna 6.0.45 Release Stable: before 148809 (fixed in 148809)
  • Genians, Inc Genian Ztna 6.0.46 Release: before 148807 (fixed in 148807)

Published 2026-10-01. Last modified 2026-10-01.