CVE-2026-1324: Sangfor Operation and Maintenance Management System SSH Protocol session SessionController os command injection
A vulnerability was identified in Sangfor Operation and Maintenance Management System up to 3.0.12. Affected by this issue is the function SessionController of the file /isomp-protocol/protocol/session of the component SSH Protocol Handler. The manipulation of the argument keypassword leads to os command injection. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-1324?
CVE-2026-1324 has been assigned a high severity rating due to the potential for remote command execution.
How do I fix CVE-2026-1324?
To fix CVE-2026-1324, update the Sangfor Operation and Maintenance Management System to version 3.0.13 or later.
What systems are affected by CVE-2026-1324?
CVE-2026-1324 affects Sangfor Operation and Maintenance Management System versions up to and including 3.0.12.
What type of vulnerability is CVE-2026-1324?
CVE-2026-1324 is categorized as a command injection vulnerability occurring in the SessionController function.
Can CVE-2026-1324 be exploited remotely?
Yes, CVE-2026-1324 can be exploited remotely, allowing an attacker to execute arbitrary commands on the affected system.