Security Advisory

CVE-2026-12059

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-12 06:30:54
Last updated 2026-06-12 13:58:36
Assigner twcert
CVSS score 8.7
State PUBLISHED

Description

The SSH service of CelloOS developed by Cellopoint has an Improper Access Control vulnerability, allowing authenticated remote attackers to bypass the enforced command restrictions and execute operating system commands outside the originally authorized scope.