CVE-2026-71993Disclosure

LOWCVSS 9.3 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the openvpn function that allows remote attackers to execute arbitrary commands on the affected device. Attackers can exploit the macfilter function to inject malicious commands and obtain root privileges on the underlying system.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-78

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-08-09); latest day: 1
  • 3 total mentions across 2 days

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-08-09: 2Mentions · 2026-08-10: 1Patch / Workaround · 2026-08-09: 1Technical Details · 2026-08-09: 208-0908-10
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-08-092
Disclosure2
2026-08-101
General1
Full discourse3 posts
  • SecureShield@SecureShield_
    General

    一次情報(NVD): https://nvd.nist.gov/vuln/detail/CVE-2026-71993 参照元(ベンダー等): https://us.msi.com/Networking/RadiX-AXE6600-WiFi-6E-Tri-Band-Gaming-Router/support, https://www.msi.com/

    Post summary

    The message supplies NVD and vendor support links for CVE‑2026‑71993 without providing additional technical or exploit details.

    0000073
    25 followersView on X
  • ThreatAft@ThreatAft
    Disclosure

    🚨 MSI Radix AXE6600 — 11 CVE Bundle, ALL CVSS 9.8 CVE-2026-71983 through CVE-2026-71993: Command injection across every router function. No patch available. Restrict access NOW. → http://threataft.com/articles/msi-radix-axe6600-11-cve-bundle #cybersecurity #infosec #MSI #RouterSecurity #CISAKEV #ThreatIntel

    Post summary

    The tweet announces a bundle of 11 high‑severity command‑injection CVEs for MSI Radix AXE6600 routers, notes that no patch exists, and urges immediate access restriction.

    0000060
    36 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-71993 MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the openvpn function that allows remote attackers to execute arbitrary… https://www.cve.org/CVERecord?id=CVE-2026-71993

    Post summary

    The statement announces a command‑injection vulnerability in MSI Radix AXE6600 router firmware, linking to the CVE record for details.

    000001.3K
    57.9K followersView on X

Explore more