JingDong JD Cloud Box AX6600 Remote Privilege Escalation Vulnerability

Vulnerability

A remote privilege escalation vulnerability has been identified in the JingDong JD Cloud Box AX6600, affecting versions through 4.5.1.r4533. The issue arises in the jdcweb_rpc component, specifically within the web_get_ddns_uptime function of the /jdcapi file. The vulnerability allows for unauthorized manipulation that can be exploited remotely, leading to elevated privileges on the device.

Impact

Exploitation of this vulnerability allows for remote command execution on the affected device, with the potential to escalate privileges.

Added: Feb 16, 2026, 3:21 PM
Updated: Feb 16, 2026, 3:21 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
8.0
remediation
0.0
relevance
3.1
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.