VYPR

Navigator Network Control Suite

by Ciena

CVEs (2)

  • CVE-2026-5270CriJul 14, 2026
    risk 0.00cvss 9.8epss 0.01

    An authentication bypass vulnerability exists in certain releases of Ciena Navigator Network Control Suite (NCS), Manage Control Plan (MCP), and Blue Planet products. The issue is caused by improper handling of HTTP request paths and headers, which allows an unauthenticated…

  • CVE-2026-5269CriJul 14, 2026
    risk 0.00cvss 9.8epss 0.00

    In Ciena's Navigator Network Control Suite (NCS) and Manage Control Plan (MCP), there are hidden system accounts used for internal software operations. Some of these accounts have default passwords that may be predictable. While these accounts have very limited permissions on…