Summary
CVE-2026-18616 is an unauthenticated OS command injection vulnerability in the GL.iNet GL-MT3000 (Beryl AX) travel router. The flaw resides in the wg-server native plugin exposed through the /cgi-bin/glc interface and allows a remote, unauthenticated attacker to execute arbitrary commands as root. It is rated Critical (CVSS v4.0 9.3 / CVSS v3.1 9.8).
Technical details
- Root cause: The
wg-server.set_peermethod (in/usr/lib/oui-httpd/rpc/wg-server.so) builds a shell command withsprintf()using the fixed templatewg set wgserver peer %s allowed-ips %s persistent-keepalive 25 2>/dev/null. The attacker-suppliedpublic_keyvalue is inserted without shell metacharacter escaping or validation and the result is passed tosystem(). - Trigger conditions: An HTTP POST request to
/cgi-bin/glcinvokingserver.set_peerwith apublic_keyvalue containing shell metacharacters (for example command substitution$(...)). The/cgi-bin/glcbinary loads and invokes these plugin methods viadlopen()/dlsym()without any authentication check. - Attack vector: Network — no authentication and no user interaction required.
- Impact: Arbitrary command execution with root privileges, leading to full compromise of the device (confidentiality, integrity, and availability).
Affected software
- GL.iNet GL-MT3000 (Beryl AX) firmware versions 4.4.0 through 4.4.5.
Severity
- CVSS v3.1 base score: 9.8 (Critical) —
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v4.0 base score: 9.3 (Critical) —
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Mitigation and recommended actions
- Immediate: Upgrade GL-MT3000 firmware beyond the affected 4.4.x branch to the latest release published on the GL.iNet security updates page.
- If no patch can be applied immediately: Restrict access to the router’s administrative/HTTP interface so it is not reachable from the internet or untrusted networks (e.g., disable remote/WAN-side management and place the management interface behind a firewall or VPN), reducing exposure of the
/cgi-bin/glcendpoint.
How IONIX identifies potentially affected assets
IONIX matches the following signals against data already collected when it crawled the asset; identifying the technology sends no request beyond that crawl.
- Page title:
GL.iNet,GL-MT3000,Beryl AX,GL.iNet Admin Panel

