PT-2026-57649 · Unknown · Shibby Tomato
CVE-2026-15544
·
Published
2026-07-13
·
Updated
2026-07-13
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Shibby Tomato versions prior to 1.28.0000
Description
A stack-based buffer overflow exists in the
apcupsd component within the getupsvar() function of the www/apcupsd/tomatodata.cgi file. This issue occurs when the Field argument is manipulated, allowing a remote attacker to trigger the overflow.Recommendations
Update to a version newer than 1.28.0000.
As a temporary mitigation, restrict access to the
www/apcupsd/tomatodata.cgi file or disable the apcupsd component.Exploit
Fix
Stack Overflow
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Shibby Tomato