CVE-2026-18641: Sangfor Operation and Maintenance Security Management System Login Endpoint portal_login com.sbr.fort.foreignDP.DpLoginController os command injection
A vulnerability was determined in Sangfor Operation and Maintenance Security Management System up to 3.0.13. Affected by this vulnerability is the function com.sbr.fort.foreignDP.DpLoginController of the file /fort/portallogin of the component Login Endpoint. This manipulation causes os command injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-18641?
CVE-2026-18641 has a severity rating of high, with a score of 7.3.
What type of vulnerability is CVE-2026-18641?
CVE-2026-18641 is an OS command injection vulnerability found in the login endpoint of the Sangfor Operation and Maintenance Security Management System.
How do I fix CVE-2026-18641?
To fix CVE-2026-18641, update the Sangfor Operation and Maintenance Security Management System to version 3.0.14 or later.
What software is affected by CVE-2026-18641?
CVE-2026-18641 affects the Sangfor Operation and Maintenance Security Management System up to version 3.0.13.
What is the impact of CVE-2026-18641?
CVE-2026-18641 allows attackers to execute arbitrary operating system commands via the vulnerable login endpoint.