Security Advisory

CVE-2026-72579

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-10 10:41:13
Last updated 2026-08-10 13:15:29
Assigner TuranSec
CVSS score not scored
State PUBLISHED

Description

An OS command injection vulnerability in NASA HyperCP (main branch) allows a network-adjacent attacker who can intercept or spoof responses from oceandata.sci.gsfc.nasa.gov to execute arbitrary system commands on the researcher's workstation.