
SecAlerts@SecAlertsCo
Active Exploitation
🔌 GL-iNet GL-MT3000: CVE-2026-18615 is a command injection in wg-server.generate_publickey via /cgi-bin/glc. No auth, network-exploitable, CVSS 8.9 with exploit activity. Affects firmware up to 4.4.5. #cybersecurity #ciso #vulnerabilities https://secalerts.co/vulnerability/CVE-2026-18615?utm_campaign=x https://t.co/bmiTEC7N3J
Post summary
The tweet notes that CVE‑2026‑18615 is a command injection vulnerability with documented exploitation activity in the wild, but offers no PoC, exploit code, or patch details.
00000121
874 followersView on X
