CVE-2026-7461General(amazon / amazon_ecs_container_agent)

LOWCVSS 7.5 · HIGH

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Improper neutralization of inputs used in an OS command in the FSx Windows File Server volume mounting component in Amazon ECS Agent on Windows before version 1.103.0 might allow a remote authenticated threat actor to execute shell commands with SYSTEM privileges on the underlying host via a specially crafted username field in an ECS task definition. This issue requires permissions to register ECS task definitions or write to the Secrets Manager or SSM Parameter Store credentials used by the FSx volume configuration. To remediate this issue, users should upgrade to version 1.103.0.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-78

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • amazon_ecs_container_agent

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 3 signals
  • General: 2 classified signals
  • Disclosure: 1 classified signal
  • 3 total mentions across 1 day

Affected systems

Vendors
Products
amazon_ecs_container_agent

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-04-30: 3Technical Details · 2026-04-30: 304-30
Signal classification2 categories
General
266.7%
Disclosure
133.3%
Referenced assets4 URLs
Full discourse3 posts
  • CVE@CVEnew
    General

    CVE-2026-7461 Improper neutralization of inputs used in an OS command in the FSx Windows File Server volume mounting component in Amazon ECS Agent on Windows before version 1.103.0 m… https://www.cve.org/CVERecord?id=CVE-2026-7461

    Post summary

    The text links to CVE-2026-7461, briefly describing an OS command injection issue in Amazon ECS Agent before version 1.103.0, but does not provide further details on exploits, patches or active use.

    01010149
    57.4K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-7461 Remote Code Execution in Amazon ECS Agent FSx Windows File... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7461 Don't wait vulnerability scanning results: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=2

    Post summary

    The tweet announces the CVE-2026-7461 vulnerability in Amazon ECS Agent, indicating it as a remote code execution flaw, but it provides no further details such as PoC, exploit code, or patches.

    0000037
    4.0K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-7461 Improper neutralization of inputs used in an OS command in the FSx Windows File Server volume mounting component in Amazon ECS Agent on Windows before version 1.103.0 m… https://www.cve.org/CVERecord?id=CVE-2026-7461 ----- Traducción: CVE-2026-7461 Neu… http://infoflow.cloud`

    Post summary

    CVE‑2026‑7461 is a flaw in Amazon ECS Agent for Windows that permits arbitrary OS command execution via improperly neutralized inputs in the FSx Windows File Server volume mounting component. The announcement supplies technical details but no PoC, exploit code, patch, or reports of active exploitation.

    0000024
    75 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appamazonamazon_ecs_container_agent---

Explore more