THREAT OPS › Threat News › Security advisory: Pre-authentication RCE (default credentials + path traversal) in PulseNET Enterprise 6.0.3 (build 6975) (GE Vernova)
Security advisory: Pre-authentication RCE (default credentials + path traversal) in PulseNET Enterprise 6.0.3 (build 6975) (GE Vernova)
<p>Posted by disclosure via Fulldisclosure on Aug 17</p>0day Rubbish Research Team is publicly disclosing a vulnerability in PulseNET Enterprise 6.0.3 (build 6975) (GE <br /> Vernova). The research is published and a proof-of-concept is available.<br /> <br /> Pre-authentication RCE (default credentials + path traversal) (CVSS 9.8, pre-authentication)<br /> <br /> GE Vernova PulseNET Enterprise 6.
MITRE ATT&CK techniques
- CredentialsT1589.001
Original source: https://seclists.org/fulldisclosure/2026/Aug/61