


Perceptive Security
SOC/SIEM Consultancy

Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. Prior to version 8.2.6.3, a command injection vulnerability exists in theā¦
Published:
17 maart 2026 om 23:00:00
Alert date:
18 maart 2026 om 15:08:05
Source:
nvd.nist.gov
Web Technologies, Network Infrastructure
Roxy-WI, a web interface for managing Haproxy, Nginx, Apache and Keepalived servers, contains a command injection vulnerability in versions prior to 8.2.6.3. The vulnerability exists in the /config/compare/<service>/<server_ip>/show endpoint where authenticated users can execute arbitrary system commands on the application host. The issue is located in app/modules/config/config.py at line 362, where user input is directly formatted in a template string that gets executed. The vulnerability has been fixed in version 8.2.6.3.
Technical details
Mitigation steps:
Affected products:
Roxy-WI
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-27811
https://github.com/roxy-wi/roxy-wi/commit/a10ac7306c252014f97a7213db4a9470300fa064
https://github.com/roxy-wi/roxy-wi/releases/tag/v8.2.6.3
https://github.com/roxy-wi/roxy-wi/security/advisories/GHSA-jvmv-cw47-jh77
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
