Security Advisory

CVE-2026-22317

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-03-18 07:33:44
Last updated 2026-03-18 13:57:54
Assigner CERTVDE
State PUBLISHED

Description

A command injection vulnerability in the device’s Root CA certificate transfer workflow allows a high-privileged attacker to send crafted HTTP POST requests that result in arbitrary command execution on the underlying Linux OS with root privileges.