CVE-2026-78211: 4mosan Security Technology 4mosan Gcb Doctor
Critical severity, CVSS 9.8. EPSS: 2% chance of exploitation in the next 30 days.
4MOSAn GCB Doctor developed by 4MOSAn Security Technology has a OS Command Injection vulnerability. Unauthenticated remote attackers can inject malicious commands through an unremoved ADOdb test page parameter, thereby executing arbitrary system commands on the server.
Affected products
- 4mosan Security Technology 4mosan Gcb Doctor: before 20260621 (fixed in 20260621)
Published 2026-08-24. Last modified 2026-08-26.