Skip to main content

Threats Tagged 'cve-2026-19685'

View all threats tagged with 'cve-2026-19685'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2026-19685

Threats Tagged 'cve-2026-19685'

Click on any threat for detailed analysis and mitigation recommendations

0

This update for NetworkManager fixes the following issues: - CVE-2026-10805: local privilege escalation via malformed MUD URLs in dhclient backend (bsc#1267696). - CVE-2026-19685: missing user ownership checks for 802.1X directory properties can allow WPA-Enterprise server certificate validation bypass (bsc#1276764).

Join the discussion
0

This security update for NetworkManager addresses two vulnerabilities: CVE-2026-10805, a local privilege escalation via malformed MUD URLs in the dhclient backend, and CVE-2026-19685, a missing user ownership check for 802.1X directory properties that can allow WPA-Enterprise server certificate validation bypass. The update is rated with high severity and affects certain versions of NetworkManager in SUSE and Red Hat Enterprise Linux 9 distributions.

Join the discussion

CVE-2026-19685 is a vulnerability in NetworkManager on Red Hat Enterprise Linux 10 that allows an unprivileged local user with specific permissions to bypass server certificate validation for WPA-Enterprise (802.1X) connections. This flaw is due to an incomplete fix of a previous vulnerability (CVE-2025-9615) where the private_user restriction was not applied to certain 802.1x CA path properties. Exploitation requires an active local user session with settings.modify.own polkit permission. The vulnerability enables credential theft via a rogue access point but does not affect open or WPA2-Personal networks.

Join the discussion

Showing 1 to 3 of 3 results

Filters:Tag: cve-2026-19685
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses