CVE-2026-24517 | Copeland XWEB 300D PRO/XWEB 500D PRO/XWEB 500B PRO up to 1.12.1 Firmware Update os command injection
A vulnerability described as critical has been identified in Copeland XWEB 300D PRO, XWEB 500D PRO and XWEB 500B PRO up to 1.12.1. Affected is an unknown function of the component Firmware Update Handler. Executing a manipulation can lead to os command injection.
The identification of this vulnerability is CVE-2026-24517. The attack may be launched remotely. There is no exploit available.