VulnSea

Genians, Inc has 6 CVEs on record. Disclosure cadence is accelerating: 6 in the last 90 days against 0 in the 90 before. The busiest recent month was October 2026 with 6. The median CVSS is 7.4 (high), with 1 rated critical. None have a confirmed exploitation report. Most affected products: Genian SSL PNS (frodo-core) (3), Genian NAC 4.0.175 Release (1), Genian NAC 5.0.75 LTS Release (1).

CVEs per month

Last 12 months, by publish date

111201020304050607080910
Exploited share
0% vs 1% corpus
Median CVSS
7.4
Publish → KEV
—
Last 90 days
6 prev 0

Products

  • Genian SSL PNS (frodo-core) 3
  • Genian NAC 4.0.175 Release 1
  • Genian NAC 5.0.75 LTS Release 1
  • Genian SSL PNS (xenics_auther) 1
6
Total CVEs
1
Critical
0
CISA KEV
0
Exploited

Genians, Inc vulnerabilities

CVEs affecting Genians, Inc, newest first. Open any entry for full detail, references, and exploit status.

6 CVEsRSS

CVE-2026-76147Medium· 5.9
today

A path traversal (ZIP Slip) vulnerability caused by insufficient authorization and integrity verification in the agent upgrade feature of Genian NAC/ZTNA allows a remote attacker to execute arbitrary code

A path traversal (ZIP Slip) vulnerability caused by insufficient authorization and integrity verification in the agent upgrade feature of Genian NAC/ZTNA allows a remote attacker to execute arbitrary code

▾ SunlitGenians, Inc · Genian NAC 4.0.175 Releasevia NVD
CVE-2026-76146High· 8.4
today

An OS command injection vulnerability in Genian SSL PNS allows an attacker who knows only the client access ID, without the password, to execute arbitrary commands remotely

An OS command injection vulnerability in Genian SSL PNS allows an attacker who knows only the client access ID, without the password, to execute arbitrary commands remotely

▾ TwilightGenians, Inc · Genian SSL PNS (xenics_auther)via NVD
CVE-2026-76145High· 7.5
today

An improper privilege management vulnerability in Genian SSL PNS allows an attacker to escalate to super administrator privileges and force the creation of an OS account by manipulating the permission column during CSV bulk user registra…

An improper privilege management vulnerability in Genian SSL PNS allows an attacker to escalate to super administrator privileges and force the creation of an OS account by manipulating the permission column during CSV bulk user registra…

▾ TwilightGenians, Inc · Genian SSL PNS (frodo-core)via NVD
CVE-2026-76144Low· 1.8
today

An unrestricted file upload vulnerability caused by insufficient file extension and integrity verification in Genian SSL PNS allows an attacker to upload a dangerous file that is not an official patch

An unrestricted file upload vulnerability caused by insufficient file extension and integrity verification in Genian SSL PNS allows an attacker to upload a dangerous file that is not an official patch

▾ SunlitGenians, Inc · Genian SSL PNS (frodo-core)via NVD
CVE-2026-76143High· 7.3
today

A missing authorization vulnerability in Genian SSL PNS allows an attacker to bypass multi-factor authentication by manipulating a login request parameter.

A missing authorization vulnerability in Genian SSL PNS allows an attacker to bypass multi-factor authentication by manipulating a login request parameter.

▾ TwilightGenians, Inc · Genian SSL PNS (frodo-core)via NVD
CVE-2026-76142Critical· 9.3
today

Insufficient authentication and access control on the internal-only IPC SOAP endpoint of the Genian NAC/ZTNA policy server allows an unauthenticated attacker to invoke internal functions

Insufficient authentication and access control on the internal-only IPC SOAP endpoint of the Genian NAC/ZTNA policy server allows an unauthenticated attacker to invoke internal functions

▾ MidnightGenians, Inc · Genian NAC 5.0.75 LTS Releasevia NVD
Genians, Inc vulnerabilities (CVEs) · VulnSea