New MajorDoMo RCE Vulnerability Exposes Servers to Code Execution Attacks
ID: 445ff963-b3ba-5ad4-9117-69a85f7b6b3f
STIX ID: report--445ff963-b3ba-5ad4-9117-69a85f7b6b3f
Feed Name: cybersecurityNews.com
Threat Score
A critical unauthenticated remote code execution vulnerability (CVE-2026-27174) in MajorDoMo's /admin.php flow allows attackers to execute arbitrary PHP via an internal AJAX console using a single crafted HTTP GET, enabling compromise of cameras, sensors, automation routines, and potential lateral movement; the report provides exploitation details, IoCs, and mitigation guidance.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
