Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-10805

29
FAUCET Score

A flaw was found in NetworkManager. This local privilege escalation vulnerability exists in NetworkManager's dhclient backend when processing malformed Manufacturer Usage Description (MUD) URLs. A local user can exploit this flaw to escalate privileges by triggering a script via a crafted MUD URL, provided an administrator has explicitly configured NetworkManager to use dhclient. This issue does not affect default configurations of NetworkManager.

First published: Jun 4, 2026Last modified: Jun 4, 2026

Impacted Technologies

VendorProductVersion(s)CPE
All Versions ImpactedCPE match
cpe:2.3:a:redhat:multicluster_engine_for_kubernetes:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

6.7MEDIUM

CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
0.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.15%
Probability of exploitation in next 30 days
EPSS Percentile
4.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0015 is in the 50th percentile among its peer group of 296 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.0 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (26)

redhatvendor investigatingvia redhat_api
Product: Multicluster Engine for KubernetesFixed in: multicluster-engine/cluster-api-provider-aws-rhel9
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 10Fixed in: mobile-broadband-provider-info
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 10Fixed in: NetworkManager
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 10Fixed in: network-manager-applet
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 10Fixed in: NetworkManager-libreswan
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: NetworkManager
redhatvendor investigatingvia redhat_api
Product: Red Hat OpenShift Container Platform 4Fixed in: NetworkManager
redhatvendor investigatingvia redhat_api
Product: Red Hat OpenShift Container Platform 4Fixed in: openshift4/kubernetes-nmstate-rhel8-operator
redhatvendor investigatingvia redhat_api
Product: Red Hat OpenShift Container Platform 4Fixed in: openshift4/kubernetes-nmstate-rhel9-operator
redhatvendor investigatingvia redhat_api
Product: Red Hat OpenShift Container Platform 4Fixed in: openshift4/ose-aws-cluster-api-controllers-rhel8
redhatvendor investigatingvia redhat_api
Product: Red Hat OpenShift Container Platform 4Fixed in: openshift4/ose-aws-cluster-api-controllers-rhel9
redhatvendor investigatingvia redhat_api
Product: Red Hat OpenShift Container Platform 4Fixed in: openshift4/ose-kubernetes-nmstate-handler-rhel8
redhatvendor investigatingvia redhat_api
Product: Red Hat OpenShift Container Platform 4Fixed in: openshift4/ose-kubernetes-nmstate-handler-rhel9
redhatvendor investigatingvia redhat_api
Product: Red Hat OpenShift Container Platform 4Fixed in: openshift4/ose-ovn-kubernetes-microshift-rhel9
redhatvendor investigatingvia redhat_api
Product: Red Hat OpenShift Container Platform 4Fixed in: openshift4/ose-ovn-kubernetes-rhel9
redhatvendor investigatingvia redhat_api
Product: Red Hat JBoss Enterprise Application Platform Expansion PackFixed in: networkmanager
redhatvendor investigatingvia redhat_api
Product: Red Hat OpenShift Container Platform 4Fixed in: redhat-user-workloads/art-images
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: NetworkManager-openswan
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: NetworkManager
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: NetworkManager-libreswan
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: NetworkManager
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: NetworkManager-libreswan
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: mobile-broadband-provider-info
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: NetworkManager
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: network-manager-applet
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: NetworkManager-libreswan

Vendor Advisories (1)

redhatCVE-2026-10805Moderate

NetworkManager: NetworkManager: Local privilege escalation via malformed MUD URLs in dhclient backend

Jun 4, 2026

References

access.redhat.com / security/cve/CVE-2026-10805
bugzilla.redhat.com / show_bug.cgi