All intelligence
// vulnerability record
cached · NVD via COSMOS syncCVE-2026-33076
HIGHpublished 2026-04-24 03:16 UTC · 4 months ago · modified 2026-06-17 10:36 UTC
8.9
CVSS / 10
// description
Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. Prior to version 8.2.6.4, the haproxy_section_save interface presents a vulnerability that could lead to remote code execution due to path traversal and writing into scheduled tasks. Version 8.2.6.4 fixes the issue.
// weaknesses (CWE)
- CWE-22