SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-15548

HIGH · CVSS 8.8 EPSS 0.56%

Source: NVD + CISA KEV + EPSS · Published 2026-07-13 · Last synced 2026-08-12

CyberRota Analysis

AI-Generated

A stack-based buffer overflow vulnerability in the DNS List Rendering function of Shibby Tomato versions up to 1.28.0000 allows for remote exploitation, potentially leading to arbitrary code execution. Users of affected Shibby Tomato firmware should prioritize immediate updates or migration to FreshTomato to mitigate the risk of exploitation. Organizations relying on this firmware for network management should assess their systems and apply necessary patches or alternatives promptly.

CVE
CVE-2026-15548
Severity
HIGH
CVSS
8.8
EPSS
0.56%

Original NVD Description

A security vulnerability has been detected in Shibby Tomato up to 1.28.0000. This vulnerability affects the function sub_407220 of the file /usr/sbin/httpd of the component DNS List Rendering. The manipulation leads to stack-based buffer overflow. The attack is possible to be carried out remotely. This project is superseded by FreshTomato.