CVE-2026-71987Disclosure

LOWCVSS 9.3 · CRITICAL

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the alg function that allows remote attackers to execute arbitrary commands on the affected device. Attackers can exploit this vulnerability through the alg function to execute malicious commands and obtain root privileges on the underlying system.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-78

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-08-09: 3Patch / Workaround · 2026-08-09: 1Technical Details · 2026-08-09: 308-09
Signal classification2 categories
Disclosure
266.7%
Patch
133.3%
Referenced assets3 URLs
Full discourse3 posts
  • Hugo | DevOps | Cybersecurity 🇱🇻@HugoValters
    Patch

    CVE-2026-71987 - Critical unpatched RCE in MSI Radix AXE6600 routers via command injection in alg function. CVSS 9.8. Full root access possible. Update immediately or isolate devices. https://www.valtersit.com/cve/CVE-2026-71987/ #CVE #MSI #infosec #infosec #cybersecurity #CVE #Linux #infosec #infosec #devsecops #devops #developer #sysadmin #100daysofcode #git #github #gitlab #redteam #blueteam #ethicalhacker #ethicalhacking #cybersecurityawareness #cybersecurity #cybersecuritynews #cybersecuritytips #python #hacker #linux #kali #ubuntu

    Post summary

    The message alerts to a critical unpatched RCE (CVE‑2026‑71987) with CVSS 9.8 and full root access, urging immediate update or isolation of affected MSI Radix AXE6600 routers.

    0000043
    1.0K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-71987 MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the alg function that allows remote attackers to execute arbitrary com… https://www.cve.org/CVERecord?id=CVE-2026-71987 ----- Traducción: CVE-2026-71987 el … http://infoflow.cloud`

    Post summary

    The message announces CVE-2026-71987, a command injection flaw in MSI Radix AXE6600 firmware, with basic technical details but no PoC, exploit, active exploitation, or patch information.

    0000037
    98 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-71987 MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the alg function that allows remote attackers to execute arbitrary com… https://www.cve.org/CVERecord?id=CVE-2026-71987

    Post summary

    The text announces a command injection flaw in MSI Radix AXE6600 firmware that permits remote execution of arbitrary commands.

    000001.7K
    57.9K followersView on X

Explore more