HIGHCVE-2026-1222Published Modified CNA twcert
CVE-2026-1222: BROWAN COMMUNICATIONS |PrismX MX100 AP controller - Arbitrary File Upload
PrismX MX100 AP controller developed by BROWAN COMMUNICATIONS has an Arbitrary File Upload vulnerability, allowing privileged remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.
Metrics
- CVSS v4.0
- 8.6
- Severity
- HIGH
- Fixed in
- 1.03.23.01
- Affected Products
- 1
Fix available
1.03.23.01
Affected packages
- BROWAN COMMUNICATIONS / PrismX MX100 AP controller< 1.03.23.01 (from 0)
CVSS Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:NReferences