CVE-2026-23699

HIGH

AP180 series < AP_RGOS 11.9(4)B1P8 - OS Command Injection

Title source: llm
STIX 2.1

Description

AP180 series with firmware versions prior to AP_RGOS 11.9(4)B1P8 contains an OS command injection vulnerability. If this vulnerability is exploited, arbitrary commands may be executed on the devices.

Scores

CVSS v3 7.2
EPSS 0.0154
EPSS Percentile 71.7%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-78
Status published
Published Jan 22, 2026
Tracked Since Feb 18, 2026