CVE-2026-93698: OS Command Injection
Published Oct 2, 2026
·Updated
Insufficient validation allows arbitrary commands to be executed via the Multilang adminbin.
Affected Software
1 affected component
Multilang adminbin
Event History
Oct 2, 2026
CVE Published
via MITRE·06:20 AM
Data Sourced
via MITRE·06:20 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The CVSS vector indicates network access is sufficient and user interaction is not required. The attacker must have low-level privileges; the provided data does not establish whether unauthenticated attackers can obtain those privileges.
2
What is the likely impact if exploitation succeeds?
The issue can lead to arbitrary command execution. The CVSS assessment indicates high impact to confidentiality, integrity, and availability, with effects potentially extending beyond the vulnerable component.