Vulnerability Description
A specially crafted HTTP POST request to the web administration interface allows an unauthenticated attacker to execute arbitrary operating system commands with root privileges on the affected device. Disable the web server when not configuring the device.
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-75937?
CVE-2026-75937 is a documented vulnerability. A specially crafted HTTP POST request to the web administration interface allows an unauthenticated attacker to execute arbitrary operating system commands with root privileges on the affected device....
How severe is CVE-2026-75937?
CVSS scoring is not yet available for CVE-2026-75937. Check NVD for updates.
Is there a patch for CVE-2026-75937?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.