Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 01 Jun 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Sat, 30 May 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Raynet
Raynet rvia |
|
| Vendors & Products |
Raynet
Raynet rvia |
Wed, 27 May 2026 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Command Injection via Improper Path Handling in Raynet RVIA |
Wed, 27 May 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Command injection in Raynet rvia version 12.6.4392.49-amd64.deb allows adversaries to execute arbitrary Java code via a crafted path that matches the improperly terminated search criteria of rvia's Java search using the find command. | Command injection in Raynet rvia version 12.6 Update 8 and previous versions allows adversaries to execute arbitrary code via a crafted path that matches the improperly terminated search criteria of rvia's Java search using the find command. |
Wed, 27 May 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-77 | |
| References |
| |
| Metrics |
cvssV3_1
|
Wed, 27 May 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Command injection in Raynet rvia version 12.6.4392.49-amd64.deb allows adversaries to execute arbitrary Java code via a crafted path that matches the improperly terminated search criteria of rvia's Java search using the find command. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-06-01T15:53:50.958Z
Reserved: 2026-04-06T00:00:00.000Z
Link: CVE-2026-38945
Updated: 2026-05-27T17:08:39.774Z
Status : Awaiting Analysis
Published: 2026-05-27T17:16:34.207
Modified: 2026-06-17T10:41:48.263
Link: CVE-2026-38945
No data.
OpenCVE Enrichment
Updated: 2026-05-30T21:22:29Z