Full Disclosure·3h ago high[0day-rubbish] Cambium cnMatrix EX3024F 6.2.1-r4 SSL CSR COMMON_NAME command injection to root RCE (7.2)#cambium#cnmatrix#command-injectionVulnerability 5 sources
Full Disclosure·4d ago[0day-rubbish] Teltonika RutOS 00.07.06.21 Authenticated ipsec.lua logread command injection with reflected output (8.8)#teltonika#rutos#command-injectionVulnerability
Full Disclosure·4d ago high[0day-rubbish] Opengear NGCS 25.11.8 Authenticated PDU name command injection to root via io.popen (8.8)#opengear#ngcs#command-injectionExploit / PoC 2 sources
Full Disclosure·18d ago[0day-rubbish] core-admin 1.0.164 (build 16468) Systemic shell command injection via ineffective quote escaping (8.8)#command-injection#core-admin#cwe-78Vulnerability1
Full Disclosure·18d ago[0day-rubbish] OP5 Monitor 9.20 Command injection surviving the CVE-2025-34115 patch (OPT-IN fix ineffective) (8.8)#command-injection#cwe-78#monitoringCVE-2025-34115 2 sources
Full Disclosure·18d ago high**Subject:** CVE-2026-2035703: Tozed ZLT X300 5G CPE — Unauthenticated Remote Root Code Execution via TR-069 Command Injection (CVSS 9.8)#5g-cpe#command-injection#cwe-78CVE-2026-2035703