Project Subscriptions
No data.
No advisories yet.
Solution
Systems connected to the vendor update service received vendor-side remediation on 2026-03-18. Systems that are offline, isolated, or otherwise unable to receive remote patches should be manually updated to any fixed release made available on or after 2026-03-18.
Workaround
No workaround given by the vendor.
Fri, 12 Jun 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The SSH service of CelloOS developed by Cellopoint has an Improper Access Control vulnerability, allowing authenticated remote attackers to bypass the enforced command restrictions and execute operating system commands outside the originally authorized scope. | |
| Title | Cellopoint|CelloOS - Improper Access Control | |
| Weaknesses | CWE-1284 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2026-06-12T06:30:54.990Z
Reserved: 2026-06-12T06:01:41.825Z
Link: CVE-2026-12059
No data.
Status : Received
Published: 2026-06-12T07:16:19.780
Modified: 2026-06-12T07:16:19.780
Link: CVE-2026-12059
No data.
OpenCVE Enrichment
Updated: 2026-06-12T07:30:08Z