CVE-2026-78037

Xiiaozet LK100W is vulnerable to OS command injection through its web-based management interface. An authenticated attacker may be able to execute arbitrary operating system commands with elevated privileges, potentially resulting in unauthorized access to sensitive information or complete device compromise.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-28 00:18

Updated : 2026-08-31 19:18


NVD link : CVE-2026-78037

Mitre link : CVE-2026-78037

CVE.ORG link : CVE-2026-78037


JSON object : View

Products Affected

No product.

CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')