Back to search
CVE-2026-31851
Published: Mar 23, 2026
Modified: Mar 26, 2026
PUBLISHED
Description
Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 does not implement rate limiting or account lockout mechanisms on authentication interfaces. An attacker can perform unlimited authentication attempts against endpoints that rely on credential validation, enabling brute-force attacks to guess administrative credentials without restriction.
| Vendor | Product | Versions |
|---|---|---|
Nexxt Solutions | Nebula 300+ | affected <= 12.01.01.37 |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now