Security Advisory

CVE-2026-36356

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-05-05 00:00:00
Last updated 2026-07-05 16:16:35
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The GoAhead web server on MeiG Smart FORGE_SLT711 devices (firmware MDM9607.LE.1.0-00110-STD.PROD-1) allows unauthenticated OS command injection via the /action/SetRemoteAccessCfg endpoint.