Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 06 May 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Meig
Meig goahead |
|
| Vendors & Products |
Meig
Meig goahead |
Tue, 05 May 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Unauthenticated OS Command Injection in GoAhead Web Server on MeiG Smart FORGE_SLT711 |
Tue, 05 May 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-306 | |
| Metrics |
cvssV3_1
|
Tue, 05 May 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Unauthenticated OS Command Injection in GoAhead Web Server on MeiG Smart FORGE_SLT711 | |
| Weaknesses | CWE-78 |
Tue, 05 May 2026 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The GoAhead web server on MeiG Smart FORGE_SLT711 devices (firmware MDM9607.LE.1.0-00110-STD.PROD-1) allows unauthenticated OS command injection via the /action/SetRemoteAccessCfg endpoint. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-05-05T17:26:31.899Z
Reserved: 2026-04-06T00:00:00.000Z
Link: CVE-2026-36356
Updated: 2026-05-05T17:24:35.995Z
Status : Awaiting Analysis
Published: 2026-05-05T14:16:08.873
Modified: 2026-05-07T15:53:49.717
Link: CVE-2026-36356
No data.
OpenCVE Enrichment
Updated: 2026-05-06T09:22:24Z