No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 17 Aug 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Gl-inet
Gl-inet a1300 Gl-inet ax1800 Gl-inet axt1800 Gl-inet be3600 Gl-inet be6500 Gl-inet be9300 Gl-inet e5800 Gl-inet mt2500 Gl-inet mt3000 Gl-inet mt3600be Gl-inet mt5000 Gl-inet mt6000 Gl-inet x2000 Gl-inet x3000 Gl-inet xe3000 |
|
| Vendors & Products |
Gl-inet
Gl-inet a1300 Gl-inet ax1800 Gl-inet axt1800 Gl-inet be3600 Gl-inet be6500 Gl-inet be9300 Gl-inet e5800 Gl-inet mt2500 Gl-inet mt3000 Gl-inet mt3600be Gl-inet mt5000 Gl-inet mt6000 Gl-inet x2000 Gl-inet x3000 Gl-inet xe3000 |
Mon, 17 Aug 2026 04:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in GL.iNet A1300, AX1800, AXT1800, BE1400, BE3600, BE6500, BE9300, BE10000, E5800, MT2500, MT3000, MT3600BE, MT5000, MT6000, X2000, X3000 and XE3000 up to 4.8.x. This affects an unknown part of the component Wi-Fi Timer Power-Schedule Feature. Executing a manipulation of the argument switch_power/restore_power can lead to os command injection. The attack can be launched remotely. The vendor explains: "After our investigation, we have confirmed that the vulnerability described (...) does indeed exist." | |
| Title | GL.iNet XE3000 Wi-Fi Timer Power-Schedule Feature os command injection | |
| First Time appeared |
Gl.inet
Gl.inet a1300 Gl.inet ax1800 Gl.inet axt1800 Gl.inet be10000 Gl.inet be1400 Gl.inet be3600 Gl.inet be6500 Gl.inet be9300 Gl.inet e5800 Gl.inet mt2500 Gl.inet mt3000 Gl.inet mt3600be Gl.inet mt5000 Gl.inet mt6000 Gl.inet x2000 Gl.inet x3000 Gl.inet xe3000 |
|
| Weaknesses | CWE-77 CWE-78 |
|
| CPEs | cpe:2.3:a:gl.inet:a1300:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:ax1800:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:axt1800:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:be10000:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:be1400:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:be3600:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:be6500:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:be9300:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:e5800:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:mt2500:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:mt3000:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:mt3600be:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:mt5000:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:mt6000:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:x2000:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:x3000:*:*:*:*:*:*:*:* cpe:2.3:a:gl.inet:xe3000:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Gl.inet
Gl.inet a1300 Gl.inet ax1800 Gl.inet axt1800 Gl.inet be10000 Gl.inet be1400 Gl.inet be3600 Gl.inet be6500 Gl.inet be9300 Gl.inet e5800 Gl.inet mt2500 Gl.inet mt3000 Gl.inet mt3600be Gl.inet mt5000 Gl.inet mt6000 Gl.inet x2000 Gl.inet x3000 Gl.inet xe3000 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-17T15:47:06.274Z
Reserved: 2026-08-16T13:38:20.583Z
Link: CVE-2026-19981
No data.
Status : Received
Published: 2026-08-17T04:16:56.600
Modified: 2026-08-17T16:16:54.963
Link: CVE-2026-19981
No data.
OpenCVE Enrichment
Updated: 2026-08-17T14:45:04Z