CVE-2026-34794 | Endian Firewall 3.3.25 Regular Expression /cgi-bin/logs_ids.cgi open Date os command injection

SecurityVulns

A vulnerability classified as critical was found in Endian Firewall 3.3.25. The impacted element is the function Open of the file /cgi-bin/logs_ids.cgi of the component Regular Expression Handler. The manipulation of the argument Date results in os command injection.

This vulnerability is known as CVE-2026-34794. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More