Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 24 Jun 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Inhandnetworks
Inhandnetworks ir912 Inhandnetworks ir915 |
|
| Vendors & Products |
Inhandnetworks
Inhandnetworks ir912 Inhandnetworks ir915 |
Wed, 24 Jun 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Remote Command Injection in InHand Networks IR912/IR915 Firmware |
Wed, 24 Jun 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Remote Command Injection in InHand Networks IR912/IR915 Firmware |
Wed, 24 Jun 2026 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Remote Command Injection in InHand Networks IR912 and IR915 Routers |
Tue, 23 Jun 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Remote Command Injection in InHand Networks IR912 and IR915 Routers |
Tue, 23 Jun 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Command Injection in InHand Networks IR912/IR915 Export Function Allows Root Access |
Tue, 23 Jun 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Command Injection in InHand Networks IR912/IR915 Export Function Allows Root Access |
Tue, 23 Jun 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Remote Command Injection in InHand Networks Router Export Function |
Thu, 18 Jun 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Remote Command Injection in InHand Networks Router Export Function |
Thu, 18 Jun 2026 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Command Injection in InHand Networks IR912/IR915 Exposing Root Access | |
| Weaknesses | CWE-78 |
Thu, 18 Jun 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Command Injection in InHand Networks IR912/IR915 Exposing Root Access | |
| Weaknesses | CWE-78 |
Thu, 18 Jun 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-77 | |
| Metrics |
cvssV3_1
|
Thu, 18 Jun 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a command injection vulnerability in the Python application export function. This vulnerability allows remote attackers to execute arbitrary commands as root via a crafted input. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-06-18T17:45:17.271Z
Reserved: 2026-04-06T00:00:00.000Z
Link: CVE-2026-38716
Updated: 2026-06-18T17:44:24.646Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-24T20:42:16Z