PT-2026-42994 · Nec Platforms · Aterm Cm51Fd+1
Sou Katou
·
Published
2026-05-25
·
Updated
2026-05-25
·
CVE-2026-8652
CVSS v4.0
8.5
High
| Vector | AV:A/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N |
An OS Command Injection vulnerability exists in Aterm. If a malicious third person gains administrator access to the product’s web console, they may be able to execute arbitrary OS commands via adjacent network.
Fix
OS Command Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Aterm Cm51Fd
Aterm Mr51Fn