
Documentation of CVE-2026-30081, a high-severity cleartext transmission vulnerability in Quantum Networks QN-I-470 router firmware 6.1.1.B1, allowing adjacent attackers to intercept admin credentials.
| Field | Value |
|---|
| CVE ID | CVE-2026-30081 |
| CWE | CWE-319: Cleartext Transmission of Sensitive Information |
| Device Model | QN-I-470 |
| Firmware | 6.1.1.B1 |
| Severity | HIGH |
| Vendor | Quantum Networks |
The administrative web interface of the affected Quantum Networks router (QN-I-470, firmware 6.1.1.B1) transmits authentication credentials in cleartext over the network.
When an administrator authenticates to the web-based management interface over HTTP, the supplied username and password are sent without any transport-layer encryption. As a result, an adjacent network attacker with access to the same broadcast domain can passively intercept network traffic and recover valid administrative credentials.
Successful credential disclosure enables complete compromise of the affected device.
An attacker capable of intercepting network traffic on the same local network can:
Given that the affected device functions as a network gateway, successful exploitation may enable network-wide attacks against connected systems, significantly increasing the overall impact.
| Field | Value |
|---|---|
| CWE ID | CWE-319 |
| CWE Name | Cleartext Transmission of Sensitive Information |
| Published | MITRE |