You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
xweb vulnerabilities
About this tag
The xweb vulnerabilities tag covers security flaws in Copeland's XWEB family of web-supervisors used in refrigeration, HVAC, and building-automation systems. Recent discussions focus on a coordinated advisory detailing authentication-bypass, input-validation, path-traversal, and memory-safety issues that can lead to denial-of-service, credential theft, and remote code execution. The tag is relevant for IT and facility managers needing to understand risks and apply mitigations for internet-accessible or poorly hardened XWEB controllers.
Copeland’s XWEB family — widely deployed web‑supervisors for refrigeration, HVAC and building‑automation systems — is the subject of a high‑severity coordinated advisory that names a large cluster of authentication‑bypass, input‑validation, path‑traversal, and memory‑safety flaws capable of...