CVE-2026-21639 is a medium severity vulnerability with a CVSS score of 5.4. No known exploits currently, and patches are available.
Very low probability of exploitation
EPSS predicts the probability of exploitation in the next 30 days based on real-world threat data, complementing CVSS severity scores with actual risk assessment.
A malicious actor in Wi-Fi range of the affected product could leverage a vulnerability in the airMAX Wireless Protocol to achieve a remote code execution (RCE) within the affected product.
Affected Products:
airMAX AC (Version 8.7.20 and earlier) airMAX M (Version 6.3.22 and earlier) airFiber AF60-XG (Version 1.2.2 and earlier) airFiber AF60 (Version 2.6.7 and earlier)
Mitigation:
Update your airMAX AC to Version 8.7.21 or later. Update your airMAX M to Version 6.3.24 or later. Update your airFiber AF60-XG to Version 1.2.3 or later. Update your airFiber AF60 to Version 2.6.8 or later.
| Vendor | Product |
|---|---|
| Ui | Airmax M Firmware |
| Ui |
Please cite this page when referencing data from Strobes VI. Proper attribution helps support our vulnerability intelligence research.
| Airmax M |
| Ui | Airfiber Af60 |
| Ui | Airfiber Af60 Xg |
| Ui | Airfiber Af60 Xg Firmware |
| Ui | Airfiber Af60 Firmware |
| Ui | Airmax Ac |
| Ui | Airmax Ac Firmware |