CVE-2023-34849: IKUAI8 Ikuaios

Critical severity, CVSS 9.8. EPSS: 2.9% chance of exploitation in the next 30 days.

An unauthorized command injection vulnerability exists in the ActionLogin function of the webman.lua file in Ikuai router OS through 3.7.1.

Affected products

  • IKUAI8 Ikuaios: up to and including 3.7.1

Published 2023-06-29. Last modified 2026-06-17.