CVE-2026-58146 | WNC T-Mobile 5G Box IDU prior 1.1.0.651412 CGI Endpoint /cgi-bin/portal.cgi cli_cookie os command injection
A vulnerability marked as very critical has been reported in WNC T-Mobile 5G Box IDU. Affected by this issue is some unknown functionality of the file /cgi-bin/portal.cgi of the component CGI Endpoint. This manipulation of the argument cli_cookie causes os command injection.
This vulnerability appears as CVE-2026-58146. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More