← Browse

CVE-2026-10873

Medium

Elevated severity or exploit probability.

CVSS base
7.2 HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS — probability of exploitation (30 days)
2.7%
85.3th percentile
CISA KEV
Not listed
Weakness / dates
CWE-77
Published 2026-06-04 · modified 2026-07-22

Description

A vulnerability was determined in Shibby Tomato 1.28.0000. Impacted is the function rstats_path of the file /bin/rstats of the component Web UI. Executing a manipulation can lead to os command injection. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. This project is superseded by FreshTomato.

References

Official: NVD · CVE.org