CVE-2026-25196 | Copeland XWEB 300D PRO/XWEB 500D PRO/XWEB 500B PRO up to 1.12.1 Configuration Wi-Fi SSID/password os command injection
A vulnerability has been found in Copeland XWEB 300D PRO, XWEB 500D PRO and XWEB 500B PRO up to 1.12.1 and classified as critical. Affected by this issue is some unknown functionality of the component Configuration Handler. This manipulation of the argument Wi-Fi SSID/password causes os command injection.
This vulnerability is registered as CVE-2026-25196. Remote exploitation of the attack is possible. No exploit is available.