CVE-2026-18584: Improper Authorization in GL.iNet E5800
CVE-2026-18584 is a medium severity vulnerability affecting GL.iNet devices including E5800, E750, X2000, X3000, XE3000, and XE300 up to the 20260707 build. It involves improper authorization in an unknown function within the /sdk/v1 component related to the eSIM LPA API. Exploitation requires local network access. The vendor has confirmed the vulnerability but no official patch or remediation details have been provided yet.
AI Analysis
Technical Summary
This vulnerability in GL.iNet devices arises from improper authorization in an unspecified function of the /sdk/v1 component of the eSIM LPA API. The flaw allows an attacker with local network access to potentially perform unauthorized actions. The affected devices include multiple GL.iNet models up to the 20260707 version. The vendor has acknowledged the issue but has not published a patch or remediation guidance. The CVSS 4.0 base score is 5.3, indicating medium severity, with attack vector limited to adjacent network and no privileges or user interaction required.
Potential Impact
The vulnerability allows improper authorization which could enable an attacker on the local network to access or manipulate functions related to the eSIM LPA API without proper permissions. The exact impact is unspecified but could involve unauthorized control or information disclosure within the affected component.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Since no official fix or temporary workaround has been published, users should restrict local network access to trusted parties and monitor vendor communications for updates.
CVE-2026-18584: Improper Authorization in GL.iNet E5800
Description
CVE-2026-18584 is a medium severity vulnerability affecting GL.iNet devices including E5800, E750, X2000, X3000, XE3000, and XE300 up to the 20260707 build. It involves improper authorization in an unknown function within the /sdk/v1 component related to the eSIM LPA API. Exploitation requires local network access. The vendor has confirmed the vulnerability but no official patch or remediation details have been provided yet.
CVSS v4.0
Score 5.3medium
Affected software
GL.iNet
E5800
GL.iNet
E750
GL.iNet
X2000
GL.iNet
X3000
GL.iNet
XE3000
GL.iNet
XE300
cpe:2.3:a:gl.inet:e5800:*:*:*:*:*:*:*:*cpe:2.3:a:gl.inet:e750:*:*:*:*:*:*:*:*cpe:2.3:a:gl.inet:x2000:*:*:*:*:*:*:*:*cpe:2.3:a:gl.inet:x3000:*:*:*:*:*:*:*:*cpe:2.3:a:gl.inet:xe3000:*:*:*:*:*:*:*:*cpe:2.3:a:gl.inet:xe300:*:*:*:*:*:*:*:*AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
This vulnerability in GL.iNet devices arises from improper authorization in an unspecified function of the /sdk/v1 component of the eSIM LPA API. The flaw allows an attacker with local network access to potentially perform unauthorized actions. The affected devices include multiple GL.iNet models up to the 20260707 version. The vendor has acknowledged the issue but has not published a patch or remediation guidance. The CVSS 4.0 base score is 5.3, indicating medium severity, with attack vector limited to adjacent network and no privileges or user interaction required.
Potential Impact
The vulnerability allows improper authorization which could enable an attacker on the local network to access or manipulate functions related to the eSIM LPA API without proper permissions. The exact impact is unspecified but could involve unauthorized control or information disclosure within the affected component.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Since no official fix or temporary workaround has been published, users should restrict local network access to trusted parties and monitor vendor communications for updates.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- VulDB
- Date Reserved
- 2026-08-02T19:23:56.933Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 6a70282abf32cb7a3405a163
Added to database: 08/03/2026, 05:33:30 UTC
Last enriched: 08/10/2026, 15:15:53 UTC
Last updated: 09/17/2026, 22:01:33 UTC
Views: 59
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.