news.mlab.sh
Vulnerabilities
Vulnerability

CVE-2026-78037

Reference data from vuln.mlab.sh, coverage from our own index.

CVSS
8.8 High
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Risk score
70.4
Published
2026-08-27
Status
Published

Xiiaozet LK100W is vulnerable to OS command injection through its web-based management interface. An authenticated attacker may be able to execute arbitrary operating system commands with elevated privileges, potentially resulting in unauthorized access to sensitive information or complete device compromise.

Weaknesses

CWE-78

Coverage 1

Advisories and references