← Back to CVE search

CVE-2026-10873

Shibby Tomato

Description

A vulnerability was determined in Shibby Tomato 1.28.0000. Impacted is the function rstats_path of the file /bin/rstats of the component Web UI. Executing a manipulation can lead to os command injection. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. This project is superseded by FreshTomato.

CVSS 7.2EPSS 2.6950000000000003%Risk 0.89
View source
Published
2026-06-04 23:16:48
Affected versions
<=1.28.0000
Type
Firmware
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H