CVE-2026-56808
Last modified
CVE-2026-56808 is a high-severity vulnerability rated 8.6/10 on the CVSS scale. DGM3103SCT provided by AVTECH Security Corporation contains an OS command injection vulnerability, which may lead to arbitrary command execution with the root privilege by a user who can log in to the web management console of the affected product.. EPSS estimates a 1.55% chance of exploitation in the next 30 days.
Description
DGM3103SCT provided by AVTECH Security Corporation contains an OS command injection vulnerability, which may lead to arbitrary command execution with the root privilege by a user who can log in to the web management console of the affected product.
Metrics
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| AVTECH Security Corporation | DGM3103SCT | firmware version 3.2.5.4 and prior |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-56808?
How severe is CVE-2026-56808?
How do I fix CVE-2026-56808?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-56788RTKLIB through 2.4.3 contains an out-of-bounds read vulnerab…7.1
- CVE-2026-56789RTKLIB through 2.4.3 contains a heap buffer overflow vulnera…7.1
- CVE-2026-5679A security vulnerability has been detected in Totolink A3300…5.5
- CVE-2026-56790CANBoat through 6.22, fixed in commit a5a22b7, contains an o…7.3
- CVE-2026-56793Dell OpenManage Server Administrator, versions prior to 11.1…9.8
- CVE-2026-56794Dell OpenManage Server Administrator, versions prior to 11.1…6.5
- CVE-2026-56809Multiple laser printers and MFPs (multifunction printers) wh…6.1
- CVE-2026-5681A flaw has been found in itsourcecode sanitize or validate t…6.3
- CVE-2026-56810Allocation of Resources Without Limits or Throttling vulnera…8.7
- CVE-2026-56811Allocation of Resources Without Limits or Throttling vulnera…7.5
- CVE-2026-56812Improper Check for Unusual or Exceptional Conditions vulnera…7.5
- CVE-2026-56813Improper Neutralization of Parameter/Argument Delimiters vul…2.1
Are you affected by CVE-2026-56808?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
