CVE-2026-71986: MSI Radix AXE6600 v781521 Command Injection via dmz Function
MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the dmz function that allows remote attackers to execute arbitrary commands on the affected device. Attackers can exploit this vulnerability through the dmz function to execute malicious commands and obtain root privileges on the underlying system.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-71986?
CVE-2026-71986 has a critical severity score of 9.8.
How do I fix CVE-2026-71986?
To fix CVE-2026-71986, update the MSI Radix AXE6600 router firmware to the latest version provided by MSI.
What type of vulnerability is CVE-2026-71986?
CVE-2026-71986 is an OS Command Injection vulnerability that allows remote attackers to execute arbitrary commands.
Who is affected by CVE-2026-71986?
Users of the MSI Radix AXE6600 router firmware version v781521 are affected by CVE-2026-71986.
Can CVE-2026-71986 be exploited remotely?
Yes, CVE-2026-71986 can be exploited remotely through the dmz function of the affected router.