A critical vulnerability has been identified in Weidmueller routers, impacting products IE-SR-2TX-WL and IE-SR-2TX-WL-4G. Two flaws, CVE-2026-63586 and CVE-2026-63587, have a maximum CVSS score of 9.8, allowing unauthenticated remote code execution and authentication bypass. Administrators are urged to apply firmware updates to versions 1.57 and 1.74, respectively. No confirmed exploitation has been detected, but the vulnerabilities pose significant risks to industrial networks. Immediate actions include restricting access through firewalls and disabling SMS control features to prevent unauthorized commands.
Weidmueller Router Flaw Lets Hackers Run Code Remotely, Patch Urged
CyberSIXT Evidence Panel
Article by CyberSIXT