PT-2026-66590 · Dnsmgr · Dnsmgr

CVE-2026-35847

·

Published

2026-07-30

·

Updated

2026-07-31

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions dnsmgr versions prior to 2.16
Description A local attacker can execute arbitrary code through the ping() function located in the CheckUils.php file.
Recommendations Update dnsmgr to version 2.16 or later. As a temporary workaround, restrict access to the ping() function in the CheckUils.php file.

Exploit

Fix

Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-35847

Affected Products

Dnsmgr