Genians develops network access control and zero-trust network access products that enforce identity and device compliance at the perimeter, creating a narrow but strategically positioned product footprint. The observed vulnerability exposure centers on authentication, input validation, and code-injection weaknesses including improper code generation, unsigned code downloads, and OS command injection, reflecting the authentication and policy-enforcement demands of access-control appliances. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Genians over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-26622CRITICAL An remote code execution vulnerability due to SSTI vulnerability and insufficient file name parameter validation was discovered in Genian NAC. Remote attackers are able to execute | Mar 25, 2022 | 10.0 | 31 | NO | NO |
CVE-2023-40252CRITICAL Improper Control of Generation of Code ('Code Injection') vulnerability in Genians Genian NAC V4.0, Genians Genian NAC V5.0, Genians Genian NAC Suite V5.0, Genians Genian ZTNA allo | Aug 17, 2023 | 9.8 | 27 | NO | NO |
CVE-2023-40254CRITICAL Download of Code Without Integrity Check vulnerability in Genians Genian NAC V4.0, Genians Genian NAC V5.0, Genians Genian NAC Suite V5.0, Genians Genian ZTNA allows Malicious Soft | Aug 11, 2023 | 9.8 | 27 | NO | NO |
CVE-2023-40253CRITICAL Improper Authentication vulnerability in Genians Genian NAC V4.0, Genians Genian NAC V5.0, Genians Genian NAC Suite V5.0, Genians Genian ZTNA allows Authentication Abuse.This issue | Aug 11, 2023 | 9.8 | 27 | NO | NO |
CVE-2023-40251MEDIUM Missing Encryption of Sensitive Data vulnerability in Genians Genian NAC V4.0, Genians Genian NAC V5.0, Genians Genian NAC Suite V5.0, Genians Genian ZTNA allows Man in the Middle | Aug 17, 2023 | 5.9 | 16 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Genians.
Media articles that mention a CVE ID that affects a product developed by Genians — matched by CVE ID, not by vendor name.