Weidmueller Router Flaw CVE-2026-63586 With CVSS 9.8 Allows Attackers To Execute Arbitrary Commands With Root Privileges
ID: f811ac49-0fe5-5725-9d06-9d323f154281
STIX ID: report--f811ac49-0fe5-5725-9d06-9d323f154281
Feed Name: securityonline.info
Threat Score
Weidmueller published an advisory for two critical vulnerabilities (CVE-2026-63586, CVE-2026-63587) in IE-SR-2TX-WL routers: an unauthenticated shell-injection in the web management interface enabling root remote code execution, and an SMS authentication bypass on 4G models; administrators should upgrade firmware to 1.57 (base) and 1.74 (4G) or apply mitigations (restrict web management access, disable SMS control).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
