What is CVE-2026-54543?
CVE-2026-54543 is a critical flaw in the Froxlor server administration software. Prior to version 2.3.8, the DomainZones.add API command fails to sanitize user-supplied 'record' and 'type' values, allowing DNS zone manipulation. Upgrading to Froxlor 2.3.8 or later is strongly recommended.
Azərbaycanca: CVE-2026-54543, Froxlor server idarəetmə proqramında aşkarlanmış kritik boşluqdur. 2.3.8 versiyasından əvvəlki versiyalarda DomainZones.add API əmri istifadəçi tərəfindən idarə olunan 'record' və 'type' dəyərlərini düzgün təmizləmir, bu da DNS zonasına manipulyasiya imkanı yaradır. Froxlor-un 2.3.8 və ya daha yeni versiyaya yenilənməsi tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-20
FAQ2
What software does CVE-2026-54543 affect?
CVE-2026-54543 is a critical flaw found in the Froxlor server administration software.
What version of Froxlor is recommended to fix CVE-2026-54543?
It is recommended to upgrade to Froxlor 2.3.8 or later.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.