What is CVE-2026-35847?
A critical vulnerability in dnsmgr v.2.15 and earlier allows a local attacker to execute arbitrary code via the ping function in the CheckUils.php file. This issue can lead to full system compromise if exploited, and immediate update to the latest version is strongly recommended.
Azərbaycanca: dnsmgr v.2.15 və əvvəlki versiyalarında CheckUils.php faylındakı ping funksiyası vasitəsilə yerli hücumçuya ixtiyari kod icra etməyə imkan verən kritik boşluq aşkarlanıb. Bu, yerli girişi olan zərərli şəxsin sistem üzərində tam nəzarət əldə etməsinə səbəb ola bilər, dərhal ən son versiyaya yeniləmə tövsiyə olunur.
FAQ2
Under what conditions can CVE-2026-35847 be exploited?
This vulnerability can be exploited by a local attacker.
Which versions of dnsmgr are affected by CVE-2026-35847?
dnsmgr v.2.15 and earlier versions are affected by this vulnerability.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.