CVE-2026-2686Disclosure

LOWCVSS 8.9 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Prioritize remediation for affected systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

A security vulnerability has been detected in SECCN Dingcheng G10 3.1.0.181203. This impacts the function qq of the file /cgi-bin/session_login.cgi. The manipulation of the argument User leads to os command injection. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used.

3.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-77CWE-78

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Threat summary

  • Public PoC and exploit tooling are both present
  • 5 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Exploit tool or code specified in 1 signal
  • PoC mentioned or linked in 1 signal
  • Technical details provided in 5 signals
  • Disclosure: 4 classified signals
  • Peaked 1d ago at 4 mentions (2026-02-19); latest day: 1
  • 5 total mentions across 2 days

Deep dive

Activity timeline5 mentions / 2d
01234Mentions · 2026-02-19: 4Mentions · 2026-02-24: 1PoC Mentioned / Linked · 2026-02-19: 1Exploit Tool / Code · 2026-02-19: 1Technical Details · 2026-02-19: 4Technical Details · 2026-02-24: 102-1902-24
Signal classification2 categories
Disclosure
480.0%
Exploit
120.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-02-194
Disclosure3Exploit1
2026-02-241
Disclosure1
Full discourse5 posts
  • CVEarity@CVEarity
    Disclosure

    ⚡ New CVE Alert: CVE-2026-2686 📊 Severity: 9.8 🚨 Risk Level: Critical 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-2686 #CVE-2026-2686 #CVE #Critical #CyberSecurity #InfoSec https://t.co/3N4dkWrsCP

    Post summary

    A new CVE-2026-2686 with severity 9.8 affecting multiple unspecified products has been announced, but no further technical or mitigation details are provided.

    0001048
    56 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-2686 A security vulnerability has been detected in SECCN Dingcheng G10 3.1.0.181203. This impacts the function qq of the file /cgi-bin/session_login.cgi. The manipulation of… https://www.cve.org/CVERecord?id=CVE-2026-2686

    Post summary

    A new vulnerability, CVE-2026-2686, has been identified in SECCN Dingcheng G10 affecting the qq function in /cgi-bin/session_login.cgi; no PoC, exploit, or patch details are provided.

    00000174
    56.5K followersView on X
  • OffSeq | Adversary Tactics for Cyber Resilience@offseq
    Exploit

    🚨 CRITICAL: OS command injection flaw in SECCN Dingcheng G10 (v3.1.0.181203) enables unauthenticated remote code execution! Exploit code is public — restrict access & monitor now. https://radar.offseq.com/threat/cve-2026-2686-os-command-injection-in-seccn-dingch-6d02b310 #OffS... https://t.co/uTsosAF8gL

    Post summary

    The tweet announces that the OS command injection flaw (CVE‑2026‑2686) in SECCN Dingcheng G10 is critical, with publicly available exploit code, but no patch or evidence of active exploitation is mentioned.

    0000042
    265 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2026-2686 - Critical A security vulnerability has been detected in SECCN Dingcheng G10 3.1.0.181203. This impacts the function qq of the file /cgi-bin/session_login.cgi. The manipulation of the argument User l... https://www.thehackerwire.com/vulnerability/CVE-2026-2686/ https://t.co/k6XKM3UFPi

    Post summary

    The post announces a critical vulnerability (CVE‑2026‑2686) in SECCN Dingcheng G10’s login CGI, detailing the affected function and parameter manipulation, but provides no PoC, exploit, or mitigation information.

    0000052
    112 followersView on X
  • 0day Signal@0dayPublishing
    Disclosure

    🚨 CVE-2026-2686: SECCN Dingcheng G10 session_login... Unauthenticated RCE in G10's session_login.cgi parameter lets attackers trivially pivot from internet to internal networ... https://zerodaysignal.com/vulnerability/CVE-2026-2686 #netsec #vulnerability #CVE #sysadmin #zeroday

    Post summary

    The tweet announces an unauthenticated remote code execution flaw in SECCN Dingcheng G10's session_login.cgi that can be used to pivot from the internet to internal networks.

    0000059
    131 followersView on X

Explore more