Remote Command Injection Vulnerability in WAYOS FBM-220G by WAYOS
CVE-2026-2548
5.3MEDIUM
What is CVE-2026-2548?
A security vulnerability has been identified in the WAYOS FBM-220G product, specifically in the function sub_40F820 of the rc file. This flaw allows for a remote attacker to manipulate certain arguments, including upnp_waniface, upnp_ssdp_interval, and upnp_max_age, leading to command execution without proper authorization. The vendor has been notified of this issue; however, there has been no response regarding a fix or mitigation. It is recommended that users assess their exposure and implement necessary security measures to protect against potential exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
FBM-220G 24.10.19
