CVE-2026-92378EPSS p1.8%
CVE-2026-92378CVE-2026-92378
Description
A session management
vulnerability exists in the Legacy UI Reduced Function Login feature of NT-ware
uniFLOW Online. Under specific timing conditions during Service Offline
Emergency Mode, a previously authenticated session may be retained after
logout, which could allow a subsequent user to be authenticated as the previous
user and gain unauthorised limited access to device functionality.
Scoring
| EPSS | 0.12% probability of exploitation · percentile 1.8% · 2026-10-05T12:00:23Z |
| Last modified | 2026-09-23 |