AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-66148

MEDIUM · CVSS 6.3 EPSS 1.17%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

An authenticated command injection vulnerability exists in GMS Command-Line Interface (CLI) versions 9.5.1 and earlier, enabling low-privileged local users to execute system commands with root privileges. This could lead to unauthorized access and potential system compromise. Organizations using affected versions should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-66148
Severity
MEDIUM
CVSS
6.3
EPSS
1.17%

Original NVD Description

An authenticated command injection vulnerability was identified in GMS Command-Line Interface (CLI) 9.5.1 (Build 9510.1044) and earlier versions which allows low-privileged local user to execute system commands with root privileges.