CVE-2026-18808: Unauthenticated Remote Code Execution via Code Injection in Klemsan's KIO
Published Sep 1, 2026
·Updated
Improper Control of Generation of Code ('Code Injection') vulnerability in Klemsan Electrical Electronics Inc. KIO (Klemsan Internet Objects) allows Code Injection.
This issue affects KIO (Klemsan Internet Objects): before v1.9.
Affected Software
1 affected component
KIO (Klemsan Internet Objects)<1.9
Event History
Sep 1, 2026
CVE Published
via MITRE·01:20 PM
Data Sourced
via MITRE·01:20 PM
DescriptionSeverityWeakness