Beveiligingsadvies

CVE-2026-85426

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-09-03 22:38:21
Laatst bijgewerkt 2026-09-04 13:41:04
Toegewezen door VulnCheck
CVSS-score 9.8
Status PUBLISHED

Beschrijving

MOOS-IvP uMemWatch through 24.8.1 constructs shell commands from attacker-chosen MOOS client names without sanitization. Attackers can inject shell metacharacters into client names to execute arbitrary commands as the uMemWatch process user through unquoted redirection targets in system calls.