SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-77120

HIGH · CVSS 8.7 EPSS 0.45%

Source: NVD + CISA KEV + EPSS · Published 2026-09-09 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

A vulnerability exists that allows authenticated users with SSH access to exploit improper input handling, leading to OS command injection. This can result in privilege escalation to root and unauthorized execution of administrative functions. Organizations utilizing affected systems should prioritize remediation to mitigate the risk of unauthorized access and potential system compromise.

CVE
CVE-2026-77120
Severity
HIGH
CVSS
8.7
EPSS
0.45%

Original NVD Description

CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could cause privilege escalation to root and unauthorized execution of administrative functions when an authenticated user with SSH enabled interacts with the operating system console that improperly processes user-controlled input.