The NetworkManager Project maintains a network configuration daemon that operates as a foundational component across Linux desktop and server environments, with a narrow product footprint centered on the NetworkManager utility itself. Its observed vulnerability pattern centers on improper input validation in network configuration handling, reflecting the parsing complexity inherent to a system service that processes diverse network protocols and configuration sources. Current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Networkmanager Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-10786CRITICAL network-manager through 1.0.2 allows remote attackers to execute arbitrary commands via the "execSync()" argument. | Feb 4, 2020 | 9.8 | 28 | NO | NO |
The receive_ra function in rdisc/nm-lndp-rdisc.c in the Neighbor Discovery (ND) protocol implementation in the IPv6 stack in NetworkManager 1.x allows remote attackers to reconfigu | Nov 16, 2015 | 3.3 | 13 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Networkmanager Project.
Media articles that mention a CVE ID that affects a product developed by Networkmanager Project — matched by CVE ID, not by vendor name.