What is CVE-2026-72579?
CVE-2026-72579 is an OS command injection vulnerability found in the main branch of NASA HyperCP. A network-adjacent attacker capable of intercepting or spoofing responses from oceandata.sci.gsfc.nasa.gov can execute arbitrary system commands on the researcher's workstation. Users should discontinue HyperCP usage or monitor network traffic until a patch is applied.
Azərbaycanca: CVE-2026-72579, NASA HyperCP alətinin əsas qolunda aşkar edilmiş OS command injection zəifliyidir. Şəbəkəyə yaxın təcavüzkar, oceandata.sci.gsfc.nasa.gov ünvanından gələn cavabları ələ keçirərək və ya saxtalaşdıraraq tədqiqatçının iş stansiyasında ixtiyari sistem əmrləri icra edə bilər. Təhlükəsizlik üçün HyperCP istifadəsini dayandırmaq və ya şəbəkə trafikini yoxlamaq tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-78
FAQ2
What software is affected by CVE-2026-72579?
CVE-2026-72579 is an OS command injection vulnerability found in the main branch of NASA HyperCP.
What can a successful attacker achieve by exploiting this vulnerability?
A network-adjacent attacker capable of intercepting or spoofing responses from oceandata.sci.gsfc.nasa.gov can execute arbitrary system commands on the researcher's workstation.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.