CVE-2026-66148 PUBLISHED

Assigner: sonicwall
Reserved: 24.07.2026 Published: 11.08.2026 Updated: 11.08.2026

An authenticated command injection vulnerability was identified in GMS Command-Line Interface (CLI) 9.5.1 (Build 9510.1044) and earlier versions which allows low-privileged local user to execute system commands with root privileges.

Product Status

Vendor SonicWall
Product GMS
Versions Default: unknown
  • Version 9.5.1 and earlier versions is affected

References

Problem Types

  • CWE-94 Improper Control of Generation of Code ('Code Injection') CWE