VYPR
Medium severity6.8NVD Advisory· Published Apr 2, 2026· Updated Apr 3, 2026

CVE-2026-30603

CVE-2026-30603

Description

An issue in the firmware update mechanism of Qianniao QN-L23PA0904 v20250721.1640 allows attackers to gain root access, install backdoors, and exfiltrate data via supplying a crafted iu.sh script contained in an SD card.

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

33