THREATOPS
THREAT OPSThreat News › Security advisory: Pre-authentication RCE (default credentials + path traversal) in PulseNET Enterprise 6.0.3 (build 6975) (GE Vernova)

Security advisory: Pre-authentication RCE (default credentials + path traversal) in PulseNET Enterprise 6.0.3 (build 6975) (GE Vernova)

lowfulldisclosurePublished 2026-08-18

<p>Posted by disclosure via Fulldisclosure on Aug 17</p>0day Rubbish Research Team is publicly disclosing a vulnerability in PulseNET Enterprise 6.0.3 (build 6975) (GE <br /> Vernova). The research is published and a proof-of-concept is available.<br /> <br /> Pre-authentication RCE (default credentials + path traversal) (CVSS 9.8, pre-authentication)<br /> <br /> GE Vernova PulseNET Enterprise 6.

MITRE ATT&CK techniques

Original source: https://seclists.org/fulldisclosure/2026/Aug/61