Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 05 Jun 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Gncc
Gncc gp5 |
|
| Vendors & Products |
Gncc
Gncc gp5 |
Thu, 04 Jun 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Physical proximity boot argument injection yields root access in GNCC GP5 firmware |
Thu, 04 Jun 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Physically Proximate Attackers Bypass Authentication to Gain Root via U‑Boot Boot Argument Injection | |
| Weaknesses | CWE-640 CWE-767 |
Thu, 04 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-20 CWE-288 |
|
| Metrics |
cvssV3_1
|
Thu, 04 Jun 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Physically Proximate Attackers Bypass Authentication to Gain Root via U‑Boot Boot Argument Injection | |
| Weaknesses | CWE-640 CWE-767 |
Thu, 04 Jun 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue in the U-Boot component of GNCC GP5 v7.1.76 allows physically-proximate attackers to bypass authentication and gain root access via interrupting the boot sequence and injecting a crafted string into the kernel boot arguments. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-06-04T16:06:42.903Z
Reserved: 2026-04-06T00:00:00.000Z
Link: CVE-2026-36175
Updated: 2026-06-04T16:05:09.203Z
Status : Deferred
Published: 2026-06-04T15:16:51.260
Modified: 2026-06-04T17:16:32.193
Link: CVE-2026-36175
No data.
OpenCVE Enrichment
Updated: 2026-06-05T10:09:28Z