Loading vulnerability details…
CVSS v3.1
8.8
CVSS v4.0
9.3
EPSS
0.29%
Published
Jan 15, 2026
Modified
Jan 22, 2026
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
The vulnerability, if exploited, could allow an authenticated miscreant (OS standard user) to tamper with TCL Macro scripts and escalate privileges to OS system, potentially resulting in complete compromise of the model application server.
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:HWeaknesses (CWE)
Affected Products (1)
References (4)