---
id: CVE-2026-78796
title: >-
  An issue in Netcore B11 Enterprise-level full Gigabit 9-port shop wireless
  router v1.3.241114.024540 and before allows a remote attacker to execute
  arbitrary code via the www\cgi-bin\upgrade file
summary: >-
  An issue in Netcore B11 Enterprise-level full Gigabit 9-port shop wireless
  router v1.3.241114.024540 and before allows a remote attacker to execute
  arbitrary code via the www\cgi-bin\upgrade file
severity: none
published: '2026-10-09'
updated: '2026-10-09'
sourceUpdated: '2026-10-09T16:40:29.800'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-78796'
references:
  - url: >-
      https://github.com/PRISMI-Team/VulnDisclos/blob/main/Routers/Netcore/unauthorized-rce.md
    label: cve@mitre.org
  - url: 'https://pastebin.com/vAh2kEeT'
    label: cve@mitre.org
tags:
  - nvd
ingestedAt: '2026-10-09T16:02:33.390Z'
---

## Overview

An issue in Netcore B11 Enterprise-level full Gigabit 9-port shop wireless router v1.3.241114.024540 and before allows a remote attacker to execute arbitrary code via the www\cgi-bin\upgrade file

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
