A vulnerability identified as very critical has been detected in Sony XAV-9500ES. Impacted is an unknown function of the component Crash Dump Handler. Performing a manipulation results in command injection.

This vulnerability is identified as CVE-2026-18284. The attack is only possible with local access. There is not any exploit available.