Copeland XWEB Pro Arbitrary File-Read Vulnerability Allowing Denial-of-Service

Vulnerability

An arbitrary file-read vulnerability has been identified in Copeland XWEB Pro versions through 1.12.1. This vulnerability allows unauthenticated attackers to read arbitrary files on the system, potentially leading to a denial-of-service condition.

Impact

Exploitation of this vulnerability could result in unauthorized file access, potentially causing a denial-of-service condition.

Remediation

Users are advised to update XWEB Pro to the latest version. Instructions for updating are available on the Copeland XWEB Pro System Software Updates page. Alternatively, users can update directly from Copeland servers via the SYSTEM -- Updates | Network menu.

Added: Feb 27, 2026, 2:24 AM
Updated: Feb 27, 2026, 2:24 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
3.3
exploitability
7.4
remediation
0.0
relevance
3.3
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.