CVE-2026-40855 | WNC T-Mobile 5G Box IDU prior 1.1.0.651412 Ping Functionality /cgi-bin/portal.cgi ping ping_ip/ping_size/ping_times command injection

SecurityVulns

A vulnerability classified as very critical has been found in WNC T-Mobile 5G Box IDU. This vulnerability affects the function ping of the file /cgi-bin/portal.cgi of the component Ping Functionality. Performing a manipulation of the argument ping_ip/ping_size/ping_times results in command injection.

This vulnerability is known as CVE-2026-40855. Remote exploitation of the attack is possible. No exploit is available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More