« Volver al listado

CVE-2026-2752

Estado: AnalizadaMedia (5.3)—

Navtor NavBox allows information disclosure via the /api/ais-data endpoint. A remote, unauthenticated attacker can send crafted requests to trigger an unhandled exception, causing the server to return verbose .NET stack traces. These error messages expose internal class names, method calls, and third-party library references (e.g., System.Data.SQLite), which may assist attackers in mapping the application's internal structure.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2026-2752",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2026-2752",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "yes"
            },
            {
              "technicalImpact": "partial"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2026-03-09T15:22:21.078120Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "56a186b1-7f5e-4314-ba38-38d5499fccfd",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 5.3,
          "attackVector": "NETWORK",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "NONE",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "LOW"
        },
        "impactScore": 1.4,
        "exploitabilityScore": 3.9
      }
    ]
  },
  "affected": [
    {
      "source": "56a186b1-7f5e-4314-ba38-38d5499fccfd",
      "affectedData": [
        {
          "vendor": "Navtor",
          "product": "NavBox",
          "versions": [
            {
              "status": "affected",
              "version": "4.12.0.3"
            },
            {
              "status": "unaffected",
              "version": "4.16.2.4"
            }
          ],
          "defaultStatus": "unaffected"
        }
      ]
    }
  ],
  "published": "2026-03-06T15:16:10.987",
  "references": [
    {
      "url": "https://cydome.io/vulnerability-advisory-cve-2026-2752-in-navtor-navbox-version-4-12-0-3",
      "tags": [
        "Third Party Advisory"
      ],
      "source": "56a186b1-7f5e-4314-ba38-38d5499fccfd"
    },
    {
      "url": "https://www.navtor.com/navtor-vendor-statement",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "56a186b1-7f5e-4314-ba38-38d5499fccfd"
    }
  ],
  "vulnStatus": "Analyzed",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "56a186b1-7f5e-4314-ba38-38d5499fccfd",
      "description": [
        {
          "lang": "en",
          "value": "CWE-209"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Navtor NavBox allows information disclosure via the /api/ais-data endpoint. A remote, unauthenticated attacker can send crafted requests to trigger an unhandled exception, causing the server to return verbose .NET stack traces. These error messages expose internal class names, method calls, and third-party library references (e.g., System.Data.SQLite), which may assist attackers in mapping the application's internal structure."
    },
    {
      "lang": "es",
      "value": "Navtor NavBox permite la revelación de información a través del endpoint /api/ais-data. Un atacante remoto y no autenticado puede enviar solicitudes manipuladas para desencadenar una excepción no controlada, lo que provoca que el servidor devuelva trazas de pila .NET detalladas. Estos mensajes de error exponen nombres de clases internas, llamadas a métodos y referencias a librerías de terceros (p. ej., System.Data.SQLite), lo que puede ayudar a los atacantes a mapear la estructura interna de la aplicación."
    }
  ],
  "lastModified": "2026-06-17T10:31:39.537",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:navtor:navbox_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "57C10155-5A08-4770-B891-403CBD17BE07",
              "versionEndExcluding": "4.16.2.4",
              "versionStartIncluding": "4.12.0.3"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:navtor:navbox:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "C140C319-E253-456F-B667-FEF0F3E4DC35"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "sourceIdentifier": "56a186b1-7f5e-4314-ba38-38d5499fccfd"
}