CVE-2026-82766: Command Injection
Published Sep 14, 2026
·Updated
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in SGA1000. If this vulnerability is exploited, an arbitrary OS command may be executed by an attacker who can log in to the product.
Affected Software
1 affected component
SGA1000
Event History
Sep 14, 2026
CVE Published
via MITRE·06:37 AM
Data Sourced
via MITRE·06:37 AM
DescriptionSeverity
Frequently Asked Questions
1
Who can exploit this issue?
An attacker must be able to log in to the SGA1000. The vulnerability is remotely reachable over the network and does not require user interaction.
2
What level of access could exploitation provide?
Successful exploitation can allow execution of arbitrary OS commands. The reported impact includes high confidentiality, integrity, and availability impact.