Firmis Labs[verified]@FirmisLabsPatch
The entry points to CVE-2026-34796 with a CVSS score of 8.8/10 and advises updating Endian Firewall to the latest version to remedy the vulnerability.
The Hacker Wire@TheHackerWireDisclosure
The text announces a newly disclosed vulnerability (CVE-2026-34796) in Endian Firewall, detailing an authenticated remote OS command execution flaw, with no evidence of exploitation or patch details.
CVE@CVEnewDisclosure
CVE-2026-34796 is a privilege escalation vulnerability in Endian Firewall versions 3.3.25 and earlier that lets authenticated users execute arbitrary OS commands through the DATE parameter of /cgi-bin/logs_openvpn.cgi.
CVEFind.com@CveFindComDisclosure
The post reveals a new high‑severity OS command‐execution flaw in Endian Firewall v3.3.25 and earlier, caused by inadequate validation of the DATE parameter in /cgi-bin/logs_openvpn.cgi, but no PoC, exploit, or patch details are provided.