CVE-2026-38718: Inhandnetworks IR912L-FQ58 Firmware

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a buffer overflow vulnerability in the device registration function. This vulnerability could allow an attacker to cause a denial of service attack on the remote target device.

Affected products

  • Inhandnetworks IR912L-FQ58 Firmware: before 1.0.0.r20044 (fixed in 1.0.0.r20044)
  • Inhandnetworks IR915L-FQ39-S Firmware: before 1.0.0.r20044 (fixed in 1.0.0.r20044)

Published 2026-06-18. Last modified 2026-06-22.