CVE-2026-22317

Publication date

2026-03-18 07:33:44

Family

CERTVDE

State

PUBLISHED

Description

A command injection vulnerability in the device’s Root CA certificate transfer workflow allows a high-privileged attacker to send crafted HTTP POST requests that result in arbitrary command execution on the underlying Linux OS with root privileges.