SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-19685

HIGH · CVSS 7.1 EPSS 0.14%

Source: NVD + CISA KEV + EPSS · Published 2026-08-24 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

A vulnerability exists in NetworkManager where the private_user restriction is not enforced for specific connection properties, allowing unprivileged local users to manipulate the CA path of a private WPA-Enterprise connection profile. This oversight can lead to server certificate validation bypass, making it possible for attackers to execute credential theft through a rogue access point. Organizations utilizing NetworkManager for WPA-Enterprise connections should prioritize addressing this critical vulnerability to safeguard against potential exploitation.

CVE
CVE-2026-19685
Severity
HIGH
CVSS
7.1
EPSS
0.14%

Original NVD Description

NetworkManager did not apply the private_user restriction to the 802-1x.ca-path and phase2-ca-path directory-valued connection properties. This incomplete fix for CVE-2025-9615 allows an unprivileged local user to point a private WPA-Enterprise (802.1X) connection profile's CA path at an attacker-controlled directory, bypassing server certificate validation and enabling credential theft via a rogue access point.