CVE-2026-50043

HIGH

Seiko Solutions Inc. SkyBridge MB-A100/MB-A110 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

Title source: rule
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2026-50043. PoCs published by HermesNA-1.

AI-analyzed exploit summary This repository contains an auto-generated stub module for CVE-2026-50043, an OS command injection vulnerability in SkyBridge MB-A100/MB-A110. The code includes placeholder logic for target probing but lacks actual exploit implementation or technical details about the vulnerability's mechanics.

Description

Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in SkyBridge MB-A100/MB-A110. If this vulnerability is exploited, an arbitrary OS command may be executed by an attacker who can log in to the product with an administrative privilege.

Exploits (1)

github STUB 1 stars
by HermesNA-1 · pythonpoc
https://github.com/HermesNA-1/SnakeSploit/tree/main/data/modules_generated/cve-2026-50043_improper_neutralization_special.py

This repository contains an auto-generated stub module for CVE-2026-50043, an OS command injection vulnerability in SkyBridge MB-A100/MB-A110. The code includes placeholder logic for target probing but lacks actual exploit implementation or technical details about the vulnerability's mechanics.

Classification
Stub 99%
Attack Type
Rce
Complexity
Moderate
Reliability
Theoretical
Target: SkyBridge MB-A100/MB-A110
No auth needed
Prerequisites: Network access to the target device on the specified port (default: 80)
mistral-large-3 · analyzed Jul 09, 2026 Full analysis →

Scores

CVSS v3 7.2
EPSS 0.0113
EPSS Percentile 62.8%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-78
Status published
Products (1)
Seiko Solutions Inc./SkyBridge MB-A100/MB-A110 all versions
Published Jul 01, 2026
Tracked Since Jul 01, 2026