CVE-2026-18590
- EPSS 1.07%
- Veröffentlicht 03.08.2026 06:45:10
- Zuletzt bearbeitet 12.08.2026 21:00:37
A vulnerability was determined in Wavlink WL-NU516U1 708c073-mt7628. Affected is the function set_sys_adm of the file adm.cgi of the component Admin Password Handler. This manipulation causes os command injection. The attack is possible to be carried...
- EPSS 0.61%
- Veröffentlicht 03.08.2026 06:30:10
- Zuletzt bearbeitet 12.08.2026 21:00:37
A vulnerability was found in Wavlink WL-NU516U1 708c073-mt7628. This impacts the function change_password of the file nas.cgi. The manipulation of the argument User1Passwd results in stack-based buffer overflow. The attack can be executed remotely. T...
- EPSS 0.61%
- Veröffentlicht 03.08.2026 06:00:11
- Zuletzt bearbeitet 12.08.2026 21:00:37
A vulnerability has been found in Wavlink WL-NU516U1 708c073-mt7628. This affects the function fgets of the file nas.cgi. The manipulation of the argument CONTENT_LENGTH leads to stack-based buffer overflow. Remote exploitation of the attack is possi...
CVE-2026-18587
- EPSS 1.26%
- Veröffentlicht 03.08.2026 05:45:11
- Zuletzt bearbeitet 12.08.2026 21:00:37
A flaw has been found in Wavlink WL-NU516U1 708c073-mt7628. The impacted element is an unknown function of the component Config Import. Executing a manipulation of the argument Password can lead to os command injection. The attack may be launched rem...
CVE-2026-15513
- EPSS 1.07%
- Veröffentlicht 12.07.2026 23:30:15
- Zuletzt bearbeitet 13.07.2026 16:57:56
A security flaw has been discovered in Wavlink WL-NU516U1 260515. This affects the function wlink_uci_set_value of the file /cgi-bin/adm.cgi. Performing a manipulation of the argument lan_ip results in os command injection. The attack can be initiate...
CVE-2026-8230
- EPSS 4.94%
- Veröffentlicht 10.05.2026 04:30:09
- Zuletzt bearbeitet 24.07.2026 07:10:00
A flaw has been found in Wavlink NU516U1 240425. The impacted element is the function sys_login1 of the file /cgi-bin/login.cgi. Executing a manipulation of the argument ipaddr can lead to os command injection. The attack can be executed remotely. Th...
CVE-2026-8229
- EPSS 4.94%
- Veröffentlicht 10.05.2026 04:15:09
- Zuletzt bearbeitet 24.07.2026 07:10:00
A vulnerability was detected in Wavlink NU516U1 240425. The affected element is the function WifiBasic of the file /cgi-bin/wireless.cgi. Performing a manipulation of the argument AuthMethod/EncrypType results in os command injection. Remote exploita...
CVE-2026-8228
- EPSS 4.81%
- Veröffentlicht 10.05.2026 04:00:08
- Zuletzt bearbeitet 24.07.2026 07:10:00
A security vulnerability has been detected in Wavlink NU516U1 240425. Impacted is the function advance of the file /cgi-bin/wireless.cgi. Such manipulation of the argument wlan_conf/Channel/skiplist/ieee_80211h leads to os command injection. The atta...
CVE-2026-8227
- EPSS 4.94%
- Veröffentlicht 10.05.2026 03:45:08
- Zuletzt bearbeitet 24.07.2026 07:10:00
A weakness has been identified in Wavlink NU516U1 240425. This issue affects the function wzdapMesh of the file /cgi-bin/adm.cgi. This manipulation causes os command injection. The attack may be initiated remotely. The exploit has been made available...
CVE-2026-8192
- EPSS 4.84%
- Veröffentlicht 09.05.2026 18:30:11
- Zuletzt bearbeitet 24.07.2026 08:10:00
A security flaw has been discovered in Wavlink NU516U1 M16U1_V240425. This vulnerability affects the function wzdap of the file /cgi-bin/adm.cgi. Performing a manipulation of the argument EncrypType/wl_Pass is directly passed by the attacker/so we ca...