CVE-2026-2530
- EPSS 0.35%
- Veröffentlicht 16.02.2026 02:32:06
- Zuletzt bearbeitet 18.02.2026 19:43:36
A weakness has been identified in Wavlink WL-WN579A3 up to 20210219. This affects the function AddMac of the file /cgi-bin/wireless.cgi. This manipulation of the argument macAddr causes command injection. The attack is possible to be carried out remo...
CVE-2026-2529
- EPSS 0.38%
- Veröffentlicht 16.02.2026 02:02:08
- Zuletzt bearbeitet 18.02.2026 20:02:39
A security flaw has been discovered in Wavlink WL-WN579A3 up to 20210219. Affected by this issue is the function DeleteMac of the file /cgi-bin/wireless.cgi. The manipulation of the argument delete_list results in command injection. The attack can be...
CVE-2026-2528
- EPSS 0.38%
- Veröffentlicht 16.02.2026 02:02:07
- Zuletzt bearbeitet 18.02.2026 20:04:38
A vulnerability was identified in Wavlink WL-WN579A3 up to 20210219. Affected by this vulnerability is the function Delete_Mac_list of the file /cgi-bin/wireless.cgi. The manipulation of the argument delete_list leads to command injection. Remote exp...
CVE-2026-2527
- EPSS 0.38%
- Veröffentlicht 16.02.2026 01:32:05
- Zuletzt bearbeitet 18.02.2026 20:11:33
A vulnerability was determined in Wavlink WL-WN579A3 up to 20210219. Affected is an unknown function of the file /cgi-bin/login.cgi. Executing a manipulation of the argument key can lead to command injection. The attack may be launched remotely. The ...
CVE-2026-2526
- EPSS 0.35%
- Veröffentlicht 16.02.2026 01:02:08
- Zuletzt bearbeitet 18.02.2026 19:07:21
A vulnerability was found in Wavlink WL-WN579A3 up to 20210219. This impacts the function multi_ssid of the file /cgi-bin/wireless.cgi. Performing a manipulation of the argument SSID2G2 results in command injection. The attack may be initiated remote...
CVE-2025-44881
- EPSS 3.32%
- Veröffentlicht 20.05.2025 00:00:00
- Zuletzt bearbeitet 30.05.2025 01:20:11
A command injection vulnerability in the component /cgi-bin/qos.cgi of Wavlink WL-WN579A3 v1.0 allows attackers to execute arbitrary commands via a crafted input.
CVE-2025-44880
- EPSS 3.32%
- Veröffentlicht 20.05.2025 00:00:00
- Zuletzt bearbeitet 30.05.2025 01:20:04
A command injection vulnerability in the component /cgi-bin/adm.cgi of Wavlink WL-WN579A3 v1.0 allows attackers to execute arbitrary commands via a crafted input.
CVE-2025-44882
- EPSS 3.32%
- Veröffentlicht 20.05.2025 00:00:00
- Zuletzt bearbeitet 30.05.2025 01:19:48
A command injection vulnerability in the component /cgi-bin/firewall.cgi of Wavlink WL-WN579A3 v1.0 allows attackers to execute arbitrary commands via a crafted input.