Xiiaozet LK100W is vulnerable to OS command injection through its
web-based management interface. An authenticated attacker may be able to
execute arbitrary operating system commands with elevated privileges,
potentially resulting in unauthorized access to sensitive information or
complete device compromise.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-28 00:18
Updated : 2026-08-31 19:18
NVD link : CVE-2026-78037
Mitre link : CVE-2026-78037
CVE.ORG link : CVE-2026-78037
JSON object : View
Products Affected
No product.
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
