Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-63586— Unauthenticated Remote Code Execution via Shell Injection in Web Management Interface

Quick assessment

Affected
Weidmueller Interface IE-SR-2TX-WL
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

该基于 Web 的管理界面使用经过修改的 uhttpd 服务器,并配有 CGI Shell 脚本。HTTP 基本认证中的用户名直接取自 Authorization 头,未经过任何过滤或 sanitization 处理,随后被插入到通过 system() 函数执行的 Shell 命令字符串中。攻击者可以通过提交一个包含特殊 Shell 元字符的精心构造的用户名,从而突破命令上下文限制,在未认证的状态下(只要具备对该设备的网络访问权限)以 root 权限执行任意命令。

CVSS 9.8 · Critical EPSS 0.52% · P42

Affected Version Matrix 3

VendorProduct Version RangeStatus
Weidmueller Interface IE-SR-2TX-WL 1.52< 1.57 affected
Weidmueller Interface IE-SR-2TX-WL-4G-EU 1.67< 1.74 affected
Weidmueller Interface IE-SR-2TX-WL-4G-US-V 1.67< 1.74 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-63586

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Unauthenticated Remote Code Execution via Shell Injection in Web Management Interface
Source: CVE Program / CVE List V5
Vulnerability Description
The web-based management interface uses a modified uhttpd server with CGI shell scripts. The HTTP Basic Authentication username, taken directly from the Authorization header without sanitization, is inserted into a shell command string executed via the system() function. By submitting a specially crafted username containing shell metacharacters, an unauthenticated attacker with network access to the device can escape the command context and execute arbitrary commands with root privileges.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
Weidmueller Interface IE-SR-2TX-WL 1.52 ~ 1.57 -
Weidmueller Interface IE-SR-2TX-WL-4G-EU 1.67 ~ 1.74 -
Weidmueller Interface IE-SR-2TX-WL-4G-US-V 1.67 ~ 1.74 -

II. Public POCs for CVE-2026-63586

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-63586

登录查看更多情报信息。

Vendor Advisories for CVE-2026-63586 (1)

IV. Related Vulnerabilities

V. Comments for CVE-2026-63586

No comments yet


Leave a comment