CVE-2026-32291

Publication date

2026-03-17 17:18:34

Family

cisa-cg

State

PUBLISHED

Description

The GL-iNet Comet (GL-RM1) KVM does not require authentication on the UART serial console. This attack requires physically opening the device and connecting to the UART pins.