Security Advisory

CVE-2026-8652

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-05-25 02:23:26
Last updated 2026-05-26 14:43:51
Assigner NEC
CVSS score 8.5
State PUBLISHED

Description

An OS Command Injection vulnerability exists in Aterm. If a malicious third person gains administrator access to the product’s web console, they may be able to execute arbitrary OS commands via adjacent network.