The SSH service of CelloOS developed by Cellopoint has an Improper Access Control vulnerability, allowing authenticated remote attackers to bypass the enforced command restrictions and execute operating system commands outside the originally authorized scope.
Metrics
Affected Vendors & Products
References
History
Fri, 12 Jun 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cellopoint
Cellopoint cellos |
|
| Vendors & Products |
Cellopoint
Cellopoint cellos |
Fri, 12 Jun 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 12 Jun 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The SSH service of CelloOS developed by Cellopoint has an Improper Access Control vulnerability, allowing authenticated remote attackers to bypass the enforced command restrictions and execute operating system commands outside the originally authorized scope. | |
| Title | Cellopoint|CelloOS - Improper Access Control | |
| Weaknesses | CWE-1284 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: twcert
Published: 2026-06-12T06:30:54.990Z
Updated: 2026-06-12T13:58:36.862Z
Reserved: 2026-06-12T06:01:41.825Z
Link: CVE-2026-12059
Updated: 2026-06-12T13:57:37.072Z
Status : Deferred
Published: 2026-06-12T07:16:19.780
Modified: 2026-06-12T16:00:18.860
Link: CVE-2026-12059
No data.
ReportizFlow