Unrated severityNVD Advisory· Published Jul 13, 2026· Updated Jul 13, 2026
Shibby Tomato CIFS Mount sub_2D048 os command injection
CVE-2026-15547
Description
A weakness has been identified in Shibby Tomato up to 1.28.0000. This affects the function sub_2D048 of the component CIFS Mount Handler. Executing a manipulation of the argument cifs1/cifs2 can lead to os command injection. The attack can be executed remotely. The exploit has been made available to the public and could be used for attacks. This project is superseded by FreshTomato.
Affected products
2- Range: <=1.28.0000
- Range: <=1.28.0000
Patches
Vulnerability mechanics
References
5- gitee.com/Fengyi-Wang/CVE/issues/IJTQ5Pmitreexploitissue-tracking
- vuldb.com/cve/CVE-2026-15547mitrethird-party-advisory
- vuldb.com/submit/855117mitrethird-party-advisory
- vuldb.com/vuln/377897mitrevdb-entrytechnical-description
- vuldb.com/vuln/377897/ctimitresignaturepermissions-required
News mentions
0No linked articles in our index yet.