CVE-2023-26801
LB-LINK BL-AC1900_2.0 v1.0.1, LB-LINK BL-WR9000 v2.4.9, LB-LINK BL-X26 v1.2.5, and LB-LINK BL-LTE300 v1.0.8 were discovered to contain a command injection vulnerability via the mac, time1, and time...
Affects 8 products across 1 vendor.
Attacker injects operating system commands through application inputs passed to a shell or system call.
Show all 8
Mapping is CWE-to-CAPEC per MITRE CAPEC 3.9.
A critical command injection vulnerability exists in multiple LB-LINK router models, allowing attackers to execute arbitrary commands on the device.
BSID: BS-2023-GLOBAL-060504-C • Model: /workspace/models/qwen2.5-coder-32b-instruct-bf16 • Confidence: HIGH
Is this CVE in your environment?
BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.
Check My Environment →What is CVE-2023-26801?
What is the CVSS score for CVE-2023-26801?
Is CVE-2023-26801 actively exploited?
How do I remediate CVE-2023-26801?
What systems are affected by CVE-2023-26801?
| CVE ID | CVE-2023-26801 |
|---|---|
| BSID | BS-2023-GLOBAL-060504-C BreachSpider Global ID |
| CVSS Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| Published | 2023-03-26 |
| Last Modified | 2025-05-05 |
| ICS Relevance | 15% |
| Weakness (CWE) | |
| Source | NVD |
LB-LINK BL-AC1900_2.0 v1.0.1, LB-LINK BL-WR9000 v2.4.9, LB-LINK BL-X26 v1.2.5, and LB-LINK BL-LTE300 v1.0.8 were discovered to contain a command injection vulnerability via the mac, time1, and time2 parameters at /goform/set_LimitClient_cfg.
Source: NIST NVD / MITRE CVE Database
The vulnerability is present in the /goform/set_LimitClient_cfg endpoint, where the mac, time1, and time2 parameters are not properly sanitized, leading to command injection.
Exploitation Likelihood: CRITICAL
| Vendor | Product | Fixed Version |
|---|---|---|
| Lb-Link | Bl-Lte300 Firmware | — |
| Lb-Link | Bl-Lte300 | — |
| Lb-Link | Bl-X26 Firmware | — |
| Lb-Link | Bl-X26 | — |
| Lb-Link | Bl-Wr9000 Firmware | — |
| Lb-Link | Bl-Wr9000 | — |
| Lb-Link | Bl-Ac1900 Firmware | — |
| Lb-Link | Bl-Ac1900 | — |
No patch URL on record. Monitor vendor security advisories directly.
| CISA KEV | Not in KEV catalog |
|---|---|
| Public Exploit | Not confirmed |
| PoC Code | Not confirmed |
SAGE Enrichment Record — provenance & audit hash
| Model | /workspace/models/qwen2.5-coder-32b-instruct-bf16 |
|---|---|
| Confidence | HIGH |
| Enriched At | 2026-05-24 |
| SHA-512 Audit Hash | 9ea766731015bdcf8fe980a6d8fc1d37d6f1b6051a347d051508f7d305a0bffa02b9838d31cd3c01616188abdc3f9079a70185a99ffe396ec2be130158fafe5b |
Critical Severity - Know Your Exposure
A CVSS 9.8 vulnerability in your ICS environment cannot wait. BreachSpider maps critical CVEs to your specific assets and tells you what to fix first.
Check Your Assets Free →