CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-71983

criticalCVSS 9.8covered by 1 sourcefirst seen 2026-08-08
MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the wps.cgi interface that allows remote attackers to execute arbitrary commands by injecting malicious input through the pin2g, pin5g, or pin6g parameters. Attackers can exploit these unsanitized parameters to execute arbitrary commands on the affected device and obtain root privileges.

⚡ Watch CVE-2026-71983

Get an email if CVE-2026-71983 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (1)

External references

NVD record for CVE-2026-71983

CVE.org record

Embed the live status

CVE-2026-71983 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-71983 status](https://www.csirts.com/badge/CVE-2026-71983)](https://www.csirts.com/cve/CVE-2026-71983)