CVE-2026-48694
Last modified
CVE-2026-48694 is a high-severity vulnerability rated 8.1/10 on the CVSS scale. FastNetMon Community Edition through 1.2.9 contains a configuration injection vulnerability in the Juniper router integration plugin. In src/juniper_plugin/fastnetmon_juniper.php, the $IP_ATTACK variable (received from argv[1]) is directly interpolated into Juniper NETCONF set-configuration commands at lines 69 and 90 without any validation or sanitization. EPSS estimates a 0.23% chance of exploitation in the next 30 days.
Description
FastNetMon Community Edition through 1.2.9 contains a configuration injection vulnerability in the Juniper router integration plugin. In src/juniper_plugin/fastnetmon_juniper.php, the $IP_ATTACK variable (received from argv[1]) is directly interpolated into Juniper NETCONF set-configuration commands at lines 69 and 90 without any validation or sanitization. Line 69: $conn->load_set_configuration("set routing-options static route {$IP_ATTACK} community 65535:666 discard"). Line 90: $conn->load_set_configuration("delete routing-options static route {$IP_ATTACK}/32"). An attacker who can control the IP address string can inject additional Juniper CLI configuration commands by embedding newline characters followed by arbitrary set/delete commands. This could modify the router's routing table, firewall filters, user accounts, or any other configuration element accessible via NETCONF. The impact is full router compromise.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Pavel-Odintsov | Fastnetmon | <= 1.2.9 |
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-48694?
How severe is CVE-2026-48694?
How do I fix CVE-2026-48694?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-48688FastNetMon Community Edition through 1.2.9 contains multiple…7.5
- CVE-2026-48689FastNetMon Community Edition through 1.2.9 contains an off-b…9.8
- CVE-2026-48690FastNetMon Community Edition through 1.2.9 contains an integ…7.1
- CVE-2026-48691FastNetMon Community Edition through 1.2.9 contains an integ…9.8
- CVE-2026-48692FastNetMon Community Edition through 1.2.9 exposes a gRPC AP…8.1
- CVE-2026-48693FastNetMon Community Edition through 1.2.9 is vulnerable to …5.5
- CVE-2026-48695FastNetMon Community Edition through 1.2.9 contains an OS co…8.1
- CVE-2026-48696FastNetMon Community Edition through 1.2.9 has a buffer over…6.2
- CVE-2026-48697FastNetMon Community Edition through 1.2.9 does not verify T…7.4
- CVE-2026-4870IBM Qiskit SDK 0.43.0 through 2.5.0 could allow an attacker …7.5
- CVE-2026-48700An issue was discovered in all versions of PCManFM-Qt starti…9.3
- CVE-2026-48702Rekor is a software supply chain transparency log. Starting …7.5
Are you affected by CVE-2026-48694?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
