Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update to version 10.1.8.3 or later.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 22 Apr 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Newsoft
Newsoft newsoftoa |
|
| Vendors & Products |
Newsoft
Newsoft newsoftoa |
Tue, 21 Apr 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 21 Apr 2026 04:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | NewSoftOA developed by NewSoft has an OS Command Injection vulnerability, allowing unauthenticated local attackers to inject arbitrary OS commands and execute them on the server. | |
| Title | NewSoft|NewSoftOA - OS Command Injection | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2026-04-21T13:20:58.795Z
Reserved: 2026-04-09T10:34:42.896Z
Link: CVE-2026-5965
Updated: 2026-04-21T13:20:54.893Z
Status : Awaiting Analysis
Published: 2026-04-21T04:16:13.443
Modified: 2026-04-21T16:20:24.180
Link: CVE-2026-5965
No data.
OpenCVE Enrichment
Updated: 2026-04-28T08:45:27Z