CWE-88: Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability exists that could cause remote code execution by an attacker with a privileged account when malicious arguments are provided as backup configuration parameters.
Metrics
Affected Vendors & Products
References
History
Wed, 09 Sep 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Remote Code Execution via Argument Injection in Backup Configuration Parameters |
Wed, 09 Sep 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CWE-88: Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability exists that could cause remote code execution by an attacker with a privileged account when malicious arguments are provided as backup configuration parameters. | |
| Weaknesses | CWE-88 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: schneider
Published: 2026-09-09T16:19:13.547Z
Updated: 2026-09-09T20:51:32.101Z
Reserved: 2026-05-06T17:07:10.880Z
Link: CVE-2026-8044
No data.
Status : Awaiting Analysis
Published: 2026-09-09T17:17:54.137
Modified: 2026-09-09T21:17:06.727
Link: CVE-2026-8044
No data.