CVE-2026-18685PoC

LOWCVSS 8.9 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch affected systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

A security vulnerability has been detected in GL.iNet GL-MT3000 up to 4.4.5. Impacted is the function set_upgrade of the file /cgi-bin/glc of the component modem.so. Such manipulation leads to command injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure and confirmed the existence of the vulnerability.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-77

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

NONE

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-08-07: 1PoC Mentioned / Linked · 2026-08-07: 1Patch / Workaround · 2026-08-07: 1Technical Details · 2026-08-07: 108-07
Signal classification1 categories
PoC
1100.0%
Referenced assets2 URLs
By indicator
Full discourse1 post
  • SecAlerts@SecAlertsCo
    PoC

    🛜 PoC out for CVE-2026-18685: unauthenticated command injection in GL.iNet GL-MT3000 via set_upgrade in http://modem.so (/cgi-bin/glc). CVSS 8.9, full RCE. Update to firmware beyond 4.4.5 now. #cybersecurity #vulnerabilities #ciso https://secalerts.co/vulnerability/CVE-2026-18685?utm_campaign=x https://t.co/f3tjQGrwTm

    Post summary

    The tweet announces a PoC for CVE‑2026‑18685, detailing an unauthenticated command injection leading to full RCE in GL.iNet GL‑MT3000 firmware (CVSS 8.9) and urges users to update firmware beyond version 4.4.5.

    00010133
    875 followersView on X

Explore more