Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-24061

99
FAUCET Score

CVE-2026-24061 is a critical authentication bypass vulnerability affecting telnetd in GNU Inetutils through version 2.7, including Debian systems. This flaw allows a remote, unauthenticated attacker to gain root privileges by injecting "-f root" into the USER environment variable. With a CVSS score of 9.8 (Critical), it presents a severe risk due to its network-based attack vector and complete compromise potential. The vulnerability is actively exploited in the wild, listed on CISA's KEV, and has publicly available exploit modules in Metasploit and Nuclei, indicating high exploitability and widespread attention. Immediate mitigation is crucial for any systems still utilizing GNU Inetutils telnetd.

Impacted Technologies

VendorProductVersion(s)CPE
>= 1.9.3, <= 2.7CPE match
cpe:2.3:a:gnu:inetutils:*:*:*:*:*:*:*:*
11.0CPE matchmatch criteria
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

9.8CRITICAL

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
3.9
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
97.88%
Probability of exploitation in next 30 days
EPSS Percentile
99.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
Added to KEV · Jan 26, 2026
Metasploit: GNU Inetutils Telnet Authentication Bypass Exploit CVE-2026-24061 · Jan 26, 2026
Nuclei: CVE-2026-24061 · Jan 24, 2026
ExploitDB: EDB-52524 · Apr 29, 2026
This CVE's current EPSS score of 0.9788 is in the 99th percentile among its peer group of 36,897 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (6)

gcpvendor investigatingvia llm_extracted
View patch
nessusvendor investigatingvia llm_extracted
nextcloudvendor investigatingvia llm_extracted
View patch
nomadvendor investigatingvia llm_extracted
View patch
pterodactylvendor investigatingvia llm_extracted
View patch
pythonvendor investigatingvia llm_extracted
View patch

Vendor Advisories (6)

nextcloudllm-nextcloud-0a89180f4eb0d024

Moxa’s Response Regarding Remote Authentication Bypass in GNU Inetutils Telnetd (CVE-2026-24061)

Mar 9, 2026
nessusllm-nessus-98035bbdd2a0297c

Moxa’s Response Regarding Remote Authentication Bypass in GNU Inetutils Telnetd (CVE-2026-24061)

Mar 9, 2026
gcpllm-gcp-42bfa2080497c3e9

Moxa’s Response Regarding Remote Authentication Bypass in GNU Inetutils Telnetd (CVE-2026-24061)

Mar 9, 2026
nomadllm-nomad-a751c9675cd2ff61

Moxa’s Response Regarding Remote Authentication Bypass in GNU Inetutils Telnetd (CVE-2026-24061)

Mar 9, 2026
pythonllm-python-da076519d4ffb02a

Moxa’s Response Regarding Remote Authentication Bypass in GNU Inetutils Telnetd (CVE-2026-24061)

Mar 9, 2026
pterodactylllm-pterodactyl-3d2db42ee87aa6d9

Moxa’s Response Regarding Remote Authentication Bypass in GNU Inetutils Telnetd (CVE-2026-24061)

Mar 9, 2026

References

cisa.gov / known-exploited-vulnerabilities-catalog
US Government Resource
labs.greynoise.io / grimoire/2026-01-22-f-around-and-find-out-18-hours-of-unsolicited-houseguests/index.html
ExploitThird Party Advisory
openwall.com / lists/oss-security/2026/01/20/2
Mailing ListThird Party Advisory
lists.debian.org / debian-lts-announce/2026/01/msg00025.html
Mailing ListThird Party Advisory
openwall.com / lists/oss-security/2026/01/22/1
Mailing List
codeberg.org / inetutils/inetutils/commit/ccba9f748aa8d50a38d7748e2e60362edd6a32cc
Patch
codeberg.org / inetutils/inetutils/commit/fd702c02497b2f398e739e3119bed0b23dd7aa7b
Patch
lists.gnu.org / archive/html/bug-inetutils/2026-01/msg00004.html
MitigationVendor Advisory
gnu.org / software/inetutils
Product
openwall.com / lists/oss-security/2026/01/20/2
Mailing List
openwall.com / lists/oss-security/2026/01/20/8
Mailing List
vicarius.io / vsociety/posts/cve-2026-24061-detection-script-remote-authentication-bypass-in-gnu-inetutils-package
Third Party Advisory
vicarius.io / vsociety/posts/cve-2026-24061-mitigation-script-remote-authentication-bypass-in-gnu-inetutils-package
MitigationThird Party Advisory