← back
CVE-2026-21718criticalCWE-327

Copeland XWEB and XWEB Pro Use of a Broken or Risky Cryptographic Algorithm

28Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 10epss 0.4%
exploitation probability
0.4%top 63% of all CVEs
observed exploitation
nono source reports it
An authentication bypass vulnerability exists in Copeland XWEB Pro version 1.12.1 and prior, enabling any attackers to bypass the authentication requirement and achieve pre-authenticated code execution on the system.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H