CVE-2026-8191
- EPSS 5.34%
- Veröffentlicht 09.05.2026 18:15:10
- Zuletzt bearbeitet 24.07.2026 08:10:00
A vulnerability was identified in Wavlink NU516U1 M16U1_V240425. This affects the function wifi_region of the file /cgi-bin/adm.cgi. Such manipulation of the argument skiplist1/skiplist2 leads to os command injection. The attack can be launched remot...
CVE-2026-8190
- EPSS 5.34%
- Veröffentlicht 09.05.2026 17:15:08
- Zuletzt bearbeitet 24.07.2026 08:10:00
A vulnerability was determined in Wavlink NU516U1 M16U1_V240425. Affected by this issue is the function wan of the file /cgi-bin/adm.cgi. This manipulation of the argument ppp_username/ppp_passwd/rwan_ip/rwan_mask/rwan_gateway is directly passed by t...
CVE-2026-8189
- EPSS 4.81%
- Veröffentlicht 09.05.2026 16:15:09
- Zuletzt bearbeitet 24.07.2026 08:10:00
A vulnerability was found in Wavlink NU516U1 M16U1_V240425. Affected by this vulnerability is the function wzdrepeater of the file /cgi-bin/adm.cgi. The manipulation of the argument wlan_bssid/sel_Automode/sel_EncrypTyp results in os command injectio...
CVE-2026-8188
- EPSS 5.45%
- Veröffentlicht 09.05.2026 15:15:09
- Zuletzt bearbeitet 24.07.2026 08:10:00
A vulnerability has been found in Wavlink NU516U1 M16U1_V240425. Affected is the function change_wifi_password of the file /cgi-bin/adm.cgi. The manipulation of the argument wl_channel/wl_Pass/EncrypType leads to os command injection. It is possible ...
CVE-2026-4861
- EPSS 0.85%
- Veröffentlicht 26.03.2026 08:18:07
- Zuletzt bearbeitet 30.04.2026 16:57:42
A weakness has been identified in Wavlink WL-NU516U1 260227. This vulnerability affects the function ftext of the file /cgi-bin/nas.cgi. This manipulation of the argument Content-Length causes stack-based buffer overflow. The attack can be initiated ...
CVE-2026-4166
- EPSS 0.2%
- Veröffentlicht 15.03.2026 05:32:08
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability was found in Wavlink WL-NU516U1 240425. The impacted element is the function sub_404F68 of the file /cgi-bin/login.cgi. The manipulation of the argument homepage/hostname results in cross site scripting. The attack can be launched rem...
CVE-2026-3703
- EPSS 0.82%
- Veröffentlicht 08.03.2026 04:32:09
- Zuletzt bearbeitet 10.03.2026 18:55:10
A flaw has been found in Wavlink NU516U1 251208. This affects the function sub_401A10 of the file /cgi-bin/login.cgi. Executing a manipulation of the argument ipaddr can lead to out-of-bounds write. The attack may be performed from remote. The exploi...
CVE-2026-3704
- EPSS 4.9%
- Veröffentlicht 08.03.2026 03:28:16
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability has been found in Wavlink NU516U1 251208. This vulnerability affects the function sub_405B2C of the file /cgi-bin/firewall.cgi of the component Incomplete Fix CVE-2025-10959. The manipulation leads to command injection. It is possible...
CVE-2026-3662
- EPSS 17.96%
- Veröffentlicht 07.03.2026 13:32:09
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability has been found in Wavlink WL-NU516U1 240425. This vulnerability affects the function usb_p910 of the file /cgi-bin/adm.cgi. Such manipulation of the argument Pr_mode leads to command injection. It is possible to launch the attack remo...
CVE-2026-3661
- EPSS 17.49%
- Veröffentlicht 07.03.2026 13:32:07
- Zuletzt bearbeitet 29.04.2026 01:00:01
A flaw has been found in Wavlink WL-NU516U1 240425. This affects the function ota_new_upgrade of the file /cgi-bin/adm.cgi. This manipulation of the argument model causes command injection. It is possible to initiate the attack remotely. The exploit ...