CVE-2026-38056
Last modified
CVE-2026-38056 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. A local privilege escalation vulnerability exists in the iDirect iQ200 VSAT terminal running firmware 23.0.1.0. The iQ200 is a rackmount satellite modem deployed across oil and gas, maritime, defense, and remote infrastructure as the primary, and often sole communications link for offshore rigs, vessels, and remote sites. EPSS estimates a 0.10% chance of exploitation in the next 30 days.
Description
A local privilege escalation vulnerability exists in the iDirect iQ200 VSAT terminal running firmware 23.0.1.0. The iQ200 is a rackmount satellite modem deployed across oil and gas, maritime, defense, and remote infrastructure as the primary, and often sole communications link for offshore rigs, vessels, and remote sites. Important context: the device ships from the factory with a pre-configured low-privilege local user account. This account is intended for field technicians who need shell access for maintenance and diagnostics but should not have full administrative control over the device. This built-in account provides the initial access required to exploit this vulnerability. No additional credentials need to be obtained or brute-forced.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| ST Engineering iDirect | Evolution iQ‑Series terminals | <= 4.5.2.1 |
| ST Engineering iDirect | 3315-Series terminals | <= 4.5.2.1 |
| ST Engineering iDirect | 9-Series Terminals | <= 4.5.2.1 |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2026-38056?
How severe is CVE-2026-38056?
How do I fix CVE-2026-38056?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-3800A vulnerability has been found in SourceCodester/janobe Reso…8.8
- CVE-2026-3801A vulnerability was found in Tenda i3 1.0.0.6(2204). Affecte…8.8
- CVE-2026-3802A vulnerability was determined in Tenda i3 1.0.0.6(2204). Af…8.8
- CVE-2026-3803A vulnerability was identified in Tenda i3 1.0.0.6(2204). Th…8.8
- CVE-2026-3804A security flaw has been discovered in Tenda i3 1.0.0.6(2204…8.8
- CVE-2026-3805When doing a second SMB request to the same host again, curl…7.5
- CVE-2026-38057The iDirect iQ200 does not validate CSRF tokens on state-cha…8.1
- CVE-2026-38058The endpoint on the iDirect iQ200 VSAT terminal returns the …8.1
- CVE-2026-38059The iDirect iQ200 exposes the /api/identity and /api/ REST A…7.5
- CVE-2026-3806A weakness has been identified in SourceCodester/janobe Reso…8.8
- CVE-2026-38060Tenda 5G03 V05.03.02.04 (Version 1.0) is vulnerable to Comma…9.8
- CVE-2026-38061Tenda 5G03 V05.03.02.04 (Version 1.0) is vulnerable to Comma…9.8
Are you affected by CVE-2026-38056?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
