VulnerabilitiesCritical
CVE-2026-32298: Vulnerability in Multiple products
Wednesday, March 18, 2026
Global
https://nvd.nist.gov/vuln/detail/CVE-2026-32298
Summary
The Angeet ES3 KVM does not properly sanitize user-supplied variables parsed by the 'cfg.lua' script, allowing an authenticated attacker to execute OS-level commands.
Threat Analysis
The Angeet ES3 KVM does not properly sanitize user-supplied variables parsed by the 'cfg.lua' script, allowing an authenticated attacker to execute OS-level commands.
Last updated: Mar 18, 2026, 09:24 AM