Vulnerability Details CVE-2026-20797
A stack based buffer overflow exists in an API route of XWEB Pro version
1.12.1 and prior, enabling unauthenticated attackers to cause stack
corruption and a termination of the program.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.0%
CVSS Severity
CVSS v3 Score 4.3
Products affected by CVE-2026-20797
-
cpe:2.3:h:copeland:xweb_300d_pro:-
-
cpe:2.3:h:copeland:xweb_500b_pro:-
-
cpe:2.3:h:copeland:xweb_500d_pro:-
-
cpe:2.3:o:copeland:xweb_300d_pro_firmware:*
-
cpe:2.3:o:copeland:xweb_500b_pro_firmware:*
-
cpe:2.3:o:copeland:xweb_500d_pro_firmware:*