The web interface on multiple Omada switches does not adequately validate certain external inputs, which may lead to out-of-bound memory access when processing crafted requests. Under specific conditions, this flaw may result in unintended command execution.<br>An unauthenticated attacker with network access to the affected interface may cause memory corruption, service instability, or information disclosure. Successful exploitation may allow remote code execution or denial-of-service.
CVSS
No CVSS.
References
Configurations
No configuration.
History
13 Mar 2026, 19:53
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-03-13 19:53
Updated : 2026-03-13 19:53
NVD link : CVE-2026-1668
Mitre link : CVE-2026-1668
CVE.ORG link : CVE-2026-1668
JSON object : View
Products Affected
No product.
CWE
CWE-20
Improper Input Validation
