LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →

CVE-2026-0120 - Vulnerability Analysis

CriticalCVSS: 9.8

Last Updated: March 11, 2026

Modem - Remote Code Execution

Published: March 10, 2026Updated: March 11, 2026Remote Exploitable

Overview

Modem contains an out of bounds write caused by incorrect bounds check, letting remote attackers execute arbitrary code without additional privileges, exploit requires no user interaction.

Severity & Score

Severity: Critical
CVSS Score: 9.8

Impact

Remote attackers can execute arbitrary code, potentially taking full control of the system.

Mitigation

Update to the latest version.

Details

CVE ID
CVE-2026-0120
Severity
Critical
CVSS Score
9.8
Type
out_of_bounds_rw
Status
confirmed

CWE

  • CWE-787

CVSS Metrics

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H