Vai al contenuto
CodeAuditAgent

CVE-2026-38707

A command injection vulnerability exists in the IPSec VPN feature of InHand Networks IR302 firmware V3.5.108, IR305 firmware V1.0.118, IR315 firmware V1.0.118, IR615 firmware V1.0.118, and earlier versions. Attackers can exploit this vulnerability to obtain ROOT privileges on remote target devices.

Debolezza

A command injection vulnerability exists in the IPSec VPN feature of InHand Networks IR302 firmware V3.5.108, IR305 firmware V1.0.118, IR315 firmware V1.0.118, IR615 firmware V1.0.118, and earlier versions. Attackers can exploit this vulnerability to obtain ROOT privileges on remote target devices.

Prodotti interessati

  • inhandnetworks ir315_firmware
  • inhandnetworks ir315
  • inhandnetworks ir302_firmware
  • inhandnetworks ir302
  • inhandnetworks ir615_firmware
  • inhandnetworks ir615
  • inhandnetworks ir305_firmware
  • inhandnetworks ir305

Riferimenti

Trova il bug prima di un attaccante.

Accedi con GitHub e avvia il tuo primo audit in meno di un minuto. Il piano gratuito non richiede carta di credito.