Loading market data...
← Back to CVE feed

CVE-2026-78037

HIGH CVSS 8.8 View on NVD ↗

Description

Xiiaozet LK100W is vulnerable to OS command injection through its web-based management interface. An authenticated attacker may be able to execute arbitrary operating system commands with elevated privileges, potentially resulting in unauthorized access to sensitive information or complete device compromise.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Published: Aug 28, 2026 00:18 UTC Modified: Aug 28, 2026 16:18 UTC