What is CVE-2026-64828?
An OS Command Injection vulnerability was discovered in the `action_audio.php` file of Telenia Software TVox versions up to 26.5.3. An attacker could exploit this flaw to execute arbitrary commands on the server. Users are advised to immediately update to the latest version of the software.
Azərbaycanca: Telenia Software TVox-un 26.5.3 və daha əvvəlki versiyalarında `action_audio.php` faylında OS Command Injection zəifliyi aşkarlanıb. Təcavüzkar bu zəiflikdən istifadə edərək serverdə ixtiyari əmrlər icra edə bilər. İstifadəçilərə dərhal proqramı ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-78; shared vendor: Telenia Software
FAQ2
Which versions of Telenia Software TVox are affected by CVE-2026-64828?
Telenia Software TVox versions up to 26.5.3 are affected by this vulnerability.
What immediate action is recommended to users regarding CVE-2026-64828?
Users are advised to immediately update to the latest version of the software.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.