CVE-2026-82777: Command Injection
Published Sep 14, 2026
·Updated
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in CONPROSYS PAC Series. If this vulnerability is exploited, an arbitrary OS command may be executed by an attacker who can log in to the product.
Affected Software
1 affected component
CONPROSYS PAC Series
Event History
Sep 14, 2026
CVE Published
via MITRE·06:40 AM
Data Sourced
via MITRE·06:40 AM
DescriptionSeverity
Frequently Asked Questions
1
Does an attacker need valid access to exploit this issue?
Yes. The attacker must be able to log in to the CONPROSYS PAC Series product; the CVSS vector identifies the required privileges as low.
2
Does exploitation require another user to take an action?
No. The CVSS vector indicates that no user interaction is required.