What is CVE-2026-44879?
This vulnerability in the command line interface (CLI) of ECOS devices allows a highly privileged, authenticated remote attacker to perform command injection on specific CLI commands. Successful exploitation could enable the attacker to execute arbitrary commands on the underlying operating system. Applying the vendor's security patches is recommended for affected devices.
Azərbaycanca: ECOS cihazlarının əmr sətri interfeysində (CLI) aşkar edilmiş bu boşluq, yüksək imtiyazlı autentifikasiya olunmuş uzaqdan hücumçuya müəyyən CLI əmrlərində əmr inyeksiyası həyata keçirməyə imkan verir. Uğurlu istismar halında hücumçu əsas əməliyyat sistemində ixtiyari əmrlər icra edə bilər. Təsirə məruz qalan cihazlar üçün istehsalçının təhlükəsizlik yeniləmələrini tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-77
FAQ2
What level of privileges does an attacker need to exploit CVE-2026-44879?
To exploit this vulnerability, the attacker must have a highly privileged, authenticated remote access.
What can happen if CVE-2026-44879 is successfully exploited?
Successful exploitation could enable the attacker to execute arbitrary commands on the underlying operating system.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.