Ghostwire

CVE-2026-6204: LibreNMS versions before 26.3.0 are affected by an authenticated remote code execution vulnerability by abusing...

UNKNOWN CVSS 0.0 EPSS 0.02% Exploit Available 1 PoC

Published: April 13, 2026 | Last Modified: April 13, 2026

Description

LibreNMS versions before 26.3.0 are affected by an authenticated remote code execution vulnerability by abusing the Binary Locations config and the Netcommand feature. Successful exploitation requires administrative privileges. Exploitation could result in compromise of the underlying web server.

Ghostwire Analysis — What This Means Practically

Exploitation Probability (EPSS): Low — 0.02% (4th percentile)

Low exploitation probability based on current threat landscape data. Standard patching timeline is appropriate.

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

Proof-of-Concept Exploits (1)

Security Coverage (1 articles)

References