CVE-2026-33388: CWE-863 Incorrect authorization in Nozomi Networks Guardian
An access control vulnerability was discovered in the Credentials Manager functionality due to insufficient validation of user privileges. A remote authenticated user with limited privileges can view a limited subset of the available entries in the Credentials Manager. The actual credential values are not directly visible, but the user can delete entries or edit their properties. An attacker who deletes or edits an entry can disrupt authentication for dependent devices, and one who manipulates an entry's configuration may be able to indirectly obtain the credentials.
AI Analysis
Technical Summary
This vulnerability arises from insufficient validation of user privileges in the Credentials Manager functionality of Nozomi Networks Guardian. A remote authenticated user with limited privileges can access a subset of credential entries and perform deletion or modification actions. While credential values are not directly visible, modifying or deleting entries can disrupt authentication processes or indirectly expose credentials. No patch or official remediation guidance has been provided as of the published date.
Potential Impact
An attacker with limited authenticated access can delete or modify credential entries, potentially causing authentication failures for devices relying on those credentials. Indirect credential exposure is possible through manipulation of entry configurations. The vulnerability does not allow direct viewing of credential values but can disrupt system operations dependent on those credentials.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. No official fix or temporary workaround has been published. Until a fix is available, restrict access to authenticated users with limited privileges and monitor for unauthorized changes to credential entries.
CVE-2026-33388: CWE-863 Incorrect authorization in Nozomi Networks Guardian
Description
An access control vulnerability was discovered in the Credentials Manager functionality due to insufficient validation of user privileges. A remote authenticated user with limited privileges can view a limited subset of the available entries in the Credentials Manager. The actual credential values are not directly visible, but the user can delete entries or edit their properties. An attacker who deletes or edits an entry can disrupt authentication for dependent devices, and one who manipulates an entry's configuration may be able to indirectly obtain the credentials.
CVSS v4.0
Score 6.4medium
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
This vulnerability arises from insufficient validation of user privileges in the Credentials Manager functionality of Nozomi Networks Guardian. A remote authenticated user with limited privileges can access a subset of credential entries and perform deletion or modification actions. While credential values are not directly visible, modifying or deleting entries can disrupt authentication processes or indirectly expose credentials. No patch or official remediation guidance has been provided as of the published date.
Potential Impact
An attacker with limited authenticated access can delete or modify credential entries, potentially causing authentication failures for devices relying on those credentials. Indirect credential exposure is possible through manipulation of entry configurations. The vulnerability does not allow direct viewing of credential values but can disrupt system operations dependent on those credentials.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. No official fix or temporary workaround has been published. Until a fix is available, restrict access to authenticated users with limited privileges and monitor for unauthorized changes to credential entries.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- Nozomi
- Date Reserved
- 2026-03-19T11:28:43.172Z
- Cvss Version
- 4.0
- State
- PUBLISHED
- Remediation Level
- null
Threat ID: 6aa016b0acd9273b49bf9849
Added to database: 09/08/2026, 14:07:44 UTC
Last enriched: 09/08/2026, 14:23:01 UTC
Last updated: 09/09/2026, 01:16:19 UTC
Views: 12
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.