Description
An unauthenticated command injection vulnerability was identified in the GMS Dispatcher Service in GMS 9.5.1 and earlier versions which allows remote attacker to perform remote code execution through specially crafted requests.
Published:
2026-08-11
Score:
n/a
EPSS:
n/a
KEV:
No
Impact:
n/a
Action:
n/a
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Tue, 11 Aug 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An unauthenticated command injection vulnerability was identified in the GMS Dispatcher Service in GMS 9.5.1 and earlier versions which allows remote attacker to perform remote code execution through specially crafted requests. | |
| Weaknesses | CWE-94 | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: sonicwall
Published:
Updated: 2026-08-11T21:11:54.770Z
Reserved: 2026-07-24T08:34:11.798Z
Link: CVE-2026-66147
No data.
Status : Received
Published: 2026-08-11T21:17:49.173
Modified: 2026-08-11T21:17:49.173
Link: CVE-2026-66147
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-94
Improper Control of Generation of Code ('Code Injection')