๐Ÿ” CVE Alert

CVE-2026-77853

HIGH 8.8
CVSS Score
8.8
EPSS Score
0.0%
EPSS Percentile
0th

Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in FF-RFI079I4 and FF-RFI078I4. A user who can log in to the product's M-Plane (NETCONF) may execute arbitrary OS commands.

Vendor lite-on technology corporation
Product ff-rfi079i4
Published Sep 15, 2026
Last Updated Sep 15, 2026
Stay Ahead of the Next One

Get instant alerts for lite-on technology corporation ff-rfi079i4

Be the first to know when new high vulnerabilities affecting lite-on technology corporation ff-rfi079i4 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected Versions

LITE-ON Technology Corporation / FF-RFI079I4
0 < 02.01.15
LITE-ON Technology Corporation / FF-RFI078I4
0 < 02.01.15

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
5g.liteon.com: https://5g.liteon.com/security/flexfi/ jvn.jp: https://jvn.jp/en/jp/JVN02049764/