OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-27565

CRITICAL · CVSS 9.8 EPSS 0.97%

Source: NVD + CISA KEV + EPSS · Published 2026-09-16 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

An unauthenticated remote attacker can exploit this vulnerability to upload a malicious IODD file, allowing the execution of a shell script with root privileges on the affected system. This script persists even after a reboot, posing a significant risk of unauthorized access and control. Organizations using the affected products should prioritize patching this vulnerability to mitigate potential exploitation.

CVE
CVE-2026-27565
Severity
CRITICAL
CVSS
9.8
EPSS
0.97%

Original NVD Description

An unauthenticated remote attacker can upload a malicious IODD file that places and executes a shell script with root privileges. The shell script remains active even after a reboot.