PT-2026-33249 · Hgiga · Isherlock

Published

2026-04-16

·

Updated

2026-04-16

·

CVE-2026-6349

CVSS v4.0

10

Critical

AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
Name of the Vulnerable Software and Affected Versions iSherlock (affected versions not specified)
Description The iSherlock developed by HGiga contains an OS Command Injection flaw. This allows unauthenticated local attackers to inject and execute arbitrary OS commands on the server. OS Command Injection is a flaw that allows an attacker to execute system-level commands on the host operating system via a vulnerable application.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2026-6349

Affected Products

Isherlock