CVE-2026-25195 | Copeland XWEB 300D PRO/XWEB 500D PRO/XWEB 500B PRO up to 1.12.1 Firmware os command injection
A vulnerability, which was classified as critical, was found in Copeland XWEB 300D PRO, XWEB 500D PRO and XWEB 500B PRO up to 1.12.1. This vulnerability affects unknown code of the component Firmware Handler. Such manipulation leads to os command injection.
This vulnerability is listed as CVE-2026-25195. The attack may be performed from remote. There is no available exploit.