CVE-2026-50043Disclosure

LOWCVSS 8.6 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in SkyBridge MB-A100/MB-A110. If this vulnerability is exploited, an arbitrary OS command may be executed by an attacker who can log in to the product with an administrative privilege.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-78

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • Peaked 1d ago at 1 mentions (2026-07-01); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-07-01: 1Mentions · 2026-07-08: 1Technical Details · 2026-07-01: 1Technical Details · 2026-07-08: 107-0107-08
Signal classification1 categories
Disclosure
2100.0%
Referenced assets1 URL
By indicator
Full discourse2 posts
  • connect24h@connect24h
    Disclosure

    SkyBridgeは「サポート終了だから後で」では済まない。MB-A100/MB-A110全バージョンにOS Command Injection、CVE-2026-50043、CVSS 4.0で8.6。管理者権限前提でも、Web管理画面から任意OSコマンド実行の可能性がある。 現場では古い通信機器ほど資産台帳から漏れやすいのが厄介だ。今日見るべきは設置有無、WebUI有効化、WAN到達性、管理者パスワード初期値、閉域網運用の5点。対策版Firmware予定なしなので、残すなら回避策、無理なら撤去計画まで切る案件だ。#セキュリティ

    Post summary

    The post announces a CVE‑2026‑50043 OS Command Injection flaw in SkyBridge MB‑A100/MB‑A110 devices, noting severity and lack of a current fix.

    10000322
    4.3K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-50043 OS Command Injection in SkyBridge MB-A100/MB-A110 With Administrative Access https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-50043

    Post summary

    The post announces CVE‑2026‑50043, detailing an OS command injection flaw in SkyBridge devices, but does not provide proof of concept, exploit code, or active exploitation evidence.

    0000098
    4.1K followersView on X

Explore more