OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-104811

HIGH · CVSS 8.4 EPSS 0.19% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-10-05 · Last synced 2026-10-06

CyberRota Analysis

AI-Generated

A vulnerability in the Music on Hold functionality of a web portal allows remote attackers to upload malicious shared object files instead of the intended WAV audio files, leading to arbitrary code execution on affected Linux installations. This flaw can result in a full compromise of the system, particularly if authentication is bypassed. Organizations using this product should prioritize patching to mitigate the risk of exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit remote code execution code execution

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-104811
Severity
HIGH
CVSS
8.4
EPSS
0.19%
Linux

Original NVD Description

DigitalCanion SA has discovered a vulnerability that allows remote attackers to execute arbitrary code on affected installations of the product. Authentication may be required to exploit this vulnerability. The specific flaw exists within the Configuration → Services → Music on Hold functionality of the web portal listening on TCP port 443. The application is intended to allow users to upload WAV audio files but fails to properly validate the uploaded file type. An attacker can exploit this behavior to upload a malicious shared object (.so) instead of a WAV file. When the uploaded file is subsequently processed by the affected component, attacker-controlled code is loaded and executed in the context of the affected process. This can result in remote code execution and potentially full compromise of the underlying Linux system.