Ciena Products Authentication Bypass Vulnerability

Vulnerability

An authentication bypass vulnerability has been identified in certain releases of Ciena Navigator Network Control Suite (NCS), Manage Control Plan (MCP), and Blue Planet products. This vulnerability arises from improper handling of HTTP request paths and headers, enabling an unauthenticated attacker to manipulate requests and bypass authentication, along with associated audit logging controls.

Impact

Exploitation of this vulnerability allows for authentication bypass, enabling unauthorized access to the affected application or system. This could lead to unauthorized actions being performed or sensitive information being accessed, depending on the application's functionality and data sensitivity.

Added: Jul 15, 2026, 3:28 AM
Updated: Jul 15, 2026, 3:28 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
7.4
remediation
0.0
relevance
9.3
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.