CVE Explorer
CVE-2026-10056
CORS misconfiguration in the REST API of Network Optix Nx Witness VMS before version 6.1.2, when running in the default Standard security mode, on Linux and Windows allows an unauthenticated remote attacker to steal the session token of an authenticated user and perform Administrator Account Takeover via a malicious cross-origin web page visited by the victim. The High security mode is not affected.Workaround:
For existing installations running in Standard security mode, set Access-Control-Allo
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
0
Affected products and versions
1 source assertion{"platforms":["Linux","Windows","MacOS"],"product":"Nx Witness VMS","vendor":"Network Optix","versions":[{"lessThan":"6.1.2","status":"affected","version":"0","versionType":"semver"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:d2228cef92176dc073dbc5cb990a577bdaf5f531fc38209cb2467a40447f0caa · sha256:83f2481d0982cd63… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"attackComplexity":"HIGH","attackVector":"NETWORK","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH","confidentialityImpact":"HIGH","integrityImpact":"HIGH","privilegesRequired":"NONE","scope":"UNCHANGED","userInteraction":"REQUIRED","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","version":"3.1"},"metric_type":"cvssV3_1"}
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:d2228cef92176dc073dbc5cb990a577bdaf5f531fc38209cb2467a40447f0caa · sha256:83f2481d0982cd63… · /containers/cna/metrics/0/cvssV3_1
CWE assertions
1 source assertion{"cweId":"CWE-942","description":"CWE-942: Permissive Cross-Origin Resource Sharing Policy","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:d2228cef92176dc073dbc5cb990a577bdaf5f531fc38209cb2467a40447f0caa · sha256:83f2481d0982cd63… · /containers/cna/problemTypes/0/descriptions/0
Source references
1 source assertion{"name":"How to Enable CORS Validation","tags":["vendor-advisory"],"url":"https://support.networkoptix.com/hc/en-us/articles/39254208939159-How-to-Enable-CORS-Validation"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d2228cef92176dc073dbc5cb990a577bdaf5f531fc38209cb2467a40447f0caa · sha256:83f2481d0982cd63… · /containers/cna/references/0
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.