Critical severity9.8NVD Advisory· Published May 28, 2026· Updated May 28, 2026
CVE-2026-38702
CVE-2026-38702
Description
A command injection vulnerability exists in the Admin Access feature of InHand Networks IR302 firmware V3.5.108, IR305 firmware V1.0.118, IR315 firmware V1.0.118, IR615 firmware V1.0.118, and earlier versions. Attackers can exploit this vulnerability to obtain ROOT privileges on remote target devices.
Affected products
4- Range: <= V1.0.118
- Range: <= V3.5.108
- Range: <= V1.0.118
- Range: <= V1.0.118
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.