CVE-2026-27565: Remote code execution via uploading a malicious IODD file
Published Sep 16, 2026
·Updated
An unauthenticated remote attacker can upload a malicious IODD file that places and executes a shell script with root privileges. The shell script remains active even after a reboot.
Event History
Sep 16, 2026
CVE Published
via MITRE·07:52 AM
Data Sourced
via MITRE·07:52 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Who can exploit this issue?
Any remote attacker who can reach the affected upload functionality can exploit it without authentication or user interaction. Successful exploitation results in root-level code execution.
2
Does an attacker need valid credentials or a specially prepared environment?
No credentials are required, and the attack complexity is rated low. The attacker needs to upload a malicious IODD file to the vulnerable system.
3
What is the impact if exploitation succeeds?
The malicious IODD file can place and execute a shell script with root privileges. The script remains active after a reboot, enabling persistent compromise.