CVE-2026-19983 | GL.iNet XE3000 4.8.x NAS Command Service /usr/bin/gl_nas_sys os command injection
A vulnerability was found in GL.iNet A1300, AX1800, AXT1800, MT2500, MT3000, MT6000, X3000 and XE3000 4.8.x and classified as critical. This issue affects some unknown processing of the file /usr/bin/gl_nas_sys of the component NAS Command Service. The manipulation results in os command injection.
This vulnerability is cataloged as CVE-2026-19983. The attack may be launched remotely. There is no exploit available.
It is suggested to upgrade the affected component.
The vendor explains: “After our investigation, we have confirmed that the vulnerability described (…) does indeed exist.”VulDB Recent EntriesRead More