TopVuln

High-risk vulnerability digests

CVE-2026-6349

  • CRITICAL

Details

CVSS v4
10.0
NVD published
2026-04-16 03:16:30
EPSS
2.3% probability · 84.9th percentile — 2026-05-12
Affected versions
All affected versions of HGiga iSherlock
Summary
HGiga iSherlock contains an unauthenticated local OS command injection vulnerability. Attackers can inject arbitrary malicious operating system commands that execute on the target server with the privileges of the running iSherlock process. Successful exploitation leads to full compromise of the affected system.
Remediation
Apply the latest official security patch from HGiga to affected iSherlock installations as soon as possible. Restrict local access to affected systems until patching is completed to reduce attack exposure.
Exploit info
No public exploit found yet.

View on NVD

TopVuln sends digest emails with high-risk CVE picks across multiple authoritative sources—curated with EPSS and AI. Choose daily per-stream emails and optional weekly or monthly roundups.

Subscribe — free email digest or paid plan

Information is aggregated from multiple authoritative sources for convenience; verify with NVD and vendors before operational decisions.