{"id":"CVE-2026-93289","published":"2026-09-24T20:17:34.137","lastModified":"2026-09-24T21:25:27.050","description":"The affected products are vulnerable to command injection attack that could allow an unauthenticated attacker to execute system commands during the pairing process.","cvssScore":7.5,"cvssSeverity":"HIGH","cvssVector":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","cwes":["CWE-78"],"vendors":[],"products":[],"references":[{"url":"https://www.cisa.gov/news-events/ics-advisories/icsa-26-267-02","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}