CVE-2026-36174 Details
Description
GNCC GP5 v7.1.76 was discovered to store sensitive wireless network information in plaintext during routine operations to the serial console. This issue allows physically-proximate attackers to obtain sensitive information, including network credentials, via monitoring the serial UART interface.
A vulnerability exists in the GNCC GP5 indoor camera, specifically in version 7.1.76, allowing physical access to the device's UART interface to intercept sensitive wireless network information. During normal operations, the camera outputs plaintext data, including Wi-Fi credentials and a private RSA key, through the serial console. This issue arises from an insecure boot process and a fully unlocked UART interface, enabling physically-proximate attackers to monitor and capture sensitive information.
As the vendor has not provided a patch, it is recommended to isolate the camera on a dedicated VLAN without outbound internet access and to consider replacing the hardware, as factory resets do not remove sensitive data, posing a risk if the device is resold.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Jun 4, 2026CISA-ADP
Assessed Jun 8, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/BadChemical/IoT-Vulnerability-Research-Public/blob/main/GNCC-GP5-T23/README.md | CISA-ADP | BundleExploitRemedyTechnical Analysis |
| https://github.com/BadChemical/IoT-Vulnerability-Research-Public/blob/main/GNCC-GP5-T23/README.md | [email protected] | BundleExploitRemedyTechnical Analysis |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-256 | Plaintext Storage of a Password | CISA-ADP |
Affected Products
| Product | Versions |
|---|---|
| GNCC GP5 | 7.1.76 (semver) |
CPE
Remediation
| |
Change History
7 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 22, 2026 | CVE Translated | [email protected] |
| Jul 5, 2026 | CVE Modified | [email protected] |
| Jul 5, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jun 8, 2026 | CVE Modified | CISA-ADP |
| Jun 4, 2026 | New CVE Received | [email protected] |
Volerion