Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Copeland — Vulnerabilities & Security Advisories 23

Browse all 23 CVE security advisories affecting Copeland. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Copeland operates primarily as a manufacturer of commercial refrigeration and HVAC control systems, providing critical infrastructure for retail and food service environments. Historically, its software platforms have been susceptible to a range of vulnerabilities, including remote code execution, cross-site scripting, and privilege escalation flaws. These issues often stem from inadequate input validation and weak authentication mechanisms within its web-based management interfaces. Notable incidents involve the exploitation of these weaknesses to gain unauthorized administrative access, potentially allowing attackers to manipulate temperature controls or disrupt supply chain operations. The presence of twenty-three recorded CVEs highlights persistent security gaps in legacy components and firmware updates. Organizations relying on Copeland equipment must prioritize network segmentation and regular patching to mitigate risks associated with these known exploits, ensuring operational continuity and data integrity in sensitive commercial settings.

Top products by Copeland: Copeland XWEB 300D PRO
CVE IDTitleCVSSSeverityPublished
CVE-2026-3037 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-20797 Copeland XWEB and XWEB Pro Stack-based Buffer Overflow — Copeland XWEB 300D PRO 4.3 Medium2026-02-27
CVE-2026-22877 Copeland XWEB and XWEB Pro Path Traversal — Copeland XWEB 300D PROCWE-22 3.7 Low2026-02-27
CVE-2026-25037 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-25196 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-20764 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-25721 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-23702 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-24452 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-25105 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-24695 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-20902 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-25109 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-24689 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-20910 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-25195 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-24517 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-20742 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-25111 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-21389 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 8.0 High2026-02-27
CVE-2026-24663 Copeland XWEB and XWEB Pro OS Command Injection — Copeland XWEB 300D PROCWE-78 9.0 Critical2026-02-27
CVE-2026-21718 Copeland XWEB and XWEB Pro Use of a Broken or Risky Cryptographic Algorithm — Copeland XWEB 300D PROCWE-327 10.0 Critical2026-02-27
CVE-2026-25085 Copeland XWEB and XWEB Pro Unexpected Status Code or Return Value — Copeland XWEB 300D PROCWE-394 8.6 High2026-02-27

This page lists every published CVE security advisory associated with Copeland. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.