Threats Tagged 'cve-2026-18600'
View all threats tagged with 'cve-2026-18600'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-18600'
Click on any threat for detailed analysis and mitigation recommendations
A vulnerability has been found in GL.iNet GL-MT3000 up to 4.4.5. (CVE-2026-18600)CVE-2026-18600 0 A command injection vulnerability exists in GL.iNet GL-MT3000 devices up to version 4.4.5. It affects the network.switch_info and network.switch_status functions in the Network Lua RPC Plugin. The vulnerability allows remote attackers with limited privileges to execute arbitrary commands by manipulating the switch argument. The issue has been publicly disclosed and confirmed by the vendor. Join the discussion | GCVE Database | 08/03/2026, 15:32:47 UTC Added: 08/03/2026, 21:21:45 UTC |
CVE-2026-18600: Command Injection in GL.iNet GL-MT3000CVE-2026-18600 0 A vulnerability has been found in GL.iNet GL-MT3000 up to 4.4.5. This affects the function network.switch_info/network.switch_status of the file /usr/lib/oui-httpd/rpc/network of the component Network Lua RPC Plugin. Such manipulation of the argument switch leads to command injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure and confirmed the existence of the vulnerability. Join the discussion | CVE Database V5 | 08/03/2026, 13:00:10 UTC Added: 08/03/2026, 13:33:36 UTC |
Showing 1 to 2 of 2 results