CVE Database
/

CVE-2026-31851

Back to search

CVE-2026-31851

Published: Mar 23, 2026

Modified: Mar 26, 2026

PUBLISHED

Description

Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 does not implement rate limiting or account lockout mechanisms on authentication interfaces. An attacker can perform unlimited authentication attempts against endpoints that rely on credential validation, enabling brute-force attacks to guess administrative credentials without restriction.

VendorProductVersions

Nexxt Solutions

Nebula 300+

affected
<= 12.01.01.37

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now