CVE-2026-38820
EUVD-2026-6736028.08.2026, 02:16
openNDS before 11.0.0 is susceptible to unauthenticated OS command execution via shell command injection through the fas query parameter on the /opennds_preauth/ endpoint because of libopennds.sh.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| opennds | opennds | 𝑥 < 11.0.0 | CNA |
Debian Releases