Medium severity6.5NVD Advisory· Published Sep 15, 2026
CVE-2026-92256
CVE-2026-92256
Description
NR255-V version 1.5.130703 contains a sensitive information disclosure vulnerability in l2tpd_config_show_cgi.c, ipsec_show_cgi.c, and mod_vpn_remote/plan.json read handlers. Attackers can query l2tpd_config_show.cgi to expose stored IPsec PSK and RSA key material.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: 1.5.130703
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.