CVE-2026-41036
High
Published: 21 April 2026
Published
21 April 2026
Modified
06 May 2026
KEV Added
—
Patch
—
CVSS Score
8.8
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.0026
48.9th percentile
Risk Priority
18
60% EPSS · 20% KEV · 20% CVSS
Description
This vulnerability exists in Quantum Networks router due to inadequate sanitization of user-supplied input in the management CLI interface. An authenticated remote attacker could exploit this vulnerability by injecting arbitrary OS commands on the targeted device. Successful exploitation of this…
more
vulnerability could allow the attacker to perform remote code execution with root privileges on the targeted device.
Likely Mitigating ControlsAI
Per-CVE control mapping for this CVE has not run yet; the list below is derived from the weakness types (CWEs) cited in the NVD entry.
Security SummaryAI
Automated synthesis unavailable for this CVE.
Details
- CWE(s)
Affected Products
qntmnet
qn-i-470 firmware
6.1.1.b1