PatchSiren

Xiiaozet CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Xiiaozet CVE published 2026-08-28

CVE-2026-78037

The CVE-2026-78037 vulnerability affects Xiiaozet LK100W, allowing authenticated attackers to execute arbitrary operating system commands with elevated privileges through its web-based management interface. The vulnerability is classified as OS command injection, and its CVSS score is 8.7, indicating a high severity. Organizations using Xiiaozet LK100W should prioritize patching to prevent potential unaut [truncated]