Weak Password Enforcement in Quantum Networks Router
CVE-2026-41038
7.6HIGH
What is CVE-2026-41038?
A vulnerability exists in the Quantum Networks router caused by the inadequate enforcement of strong password policies within its web-based management interface. This flaw allows attackers on the same network to utilize password guessing or brute-force techniques to compromise user accounts, potentially granting them unauthorized access to the device. Proper password policies should be enforced to mitigate the risk of exploitation.
Affected Version(s)
Router QN-I-470 at 6.1.1.B1
References
CVSS V4
Score:
7.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
This vulnerability is reported by Rakesh Elamaran, Praveen S, Vignesh T, Shervin Bruce, Infant Raj R and Kalpana B N.
