CVE-2026-18590
- EPSS 1.07%
- Veröffentlicht 03.08.2026 06:45:10
- Zuletzt bearbeitet 12.08.2026 21:00:37
A vulnerability was determined in Wavlink WL-NU516U1 708c073-mt7628. Affected is the function set_sys_adm of the file adm.cgi of the component Admin Password Handler. This manipulation causes os command injection. The attack is possible to be carried...
- EPSS 0.61%
- Veröffentlicht 03.08.2026 06:30:10
- Zuletzt bearbeitet 12.08.2026 21:00:37
A vulnerability was found in Wavlink WL-NU516U1 708c073-mt7628. This impacts the function change_password of the file nas.cgi. The manipulation of the argument User1Passwd results in stack-based buffer overflow. The attack can be executed remotely. T...
- EPSS 0.61%
- Veröffentlicht 03.08.2026 06:00:11
- Zuletzt bearbeitet 12.08.2026 21:00:37
A vulnerability has been found in Wavlink WL-NU516U1 708c073-mt7628. This affects the function fgets of the file nas.cgi. The manipulation of the argument CONTENT_LENGTH leads to stack-based buffer overflow. Remote exploitation of the attack is possi...
CVE-2026-18587
- EPSS 1.26%
- Veröffentlicht 03.08.2026 05:45:11
- Zuletzt bearbeitet 12.08.2026 21:00:37
A flaw has been found in Wavlink WL-NU516U1 708c073-mt7628. The impacted element is an unknown function of the component Config Import. Executing a manipulation of the argument Password can lead to os command injection. The attack may be launched rem...
CVE-2026-15513
- EPSS 1.07%
- Veröffentlicht 12.07.2026 23:30:15
- Zuletzt bearbeitet 13.07.2026 16:57:56
A security flaw has been discovered in Wavlink WL-NU516U1 260515. This affects the function wlink_uci_set_value of the file /cgi-bin/adm.cgi. Performing a manipulation of the argument lan_ip results in os command injection. The attack can be initiate...
CVE-2026-4861
- EPSS 0.85%
- Veröffentlicht 26.03.2026 08:18:07
- Zuletzt bearbeitet 30.04.2026 16:57:42
A weakness has been identified in Wavlink WL-NU516U1 260227. This vulnerability affects the function ftext of the file /cgi-bin/nas.cgi. This manipulation of the argument Content-Length causes stack-based buffer overflow. The attack can be initiated ...
CVE-2026-4166
- EPSS 0.2%
- Veröffentlicht 15.03.2026 05:32:08
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability was found in Wavlink WL-NU516U1 240425. The impacted element is the function sub_404F68 of the file /cgi-bin/login.cgi. The manipulation of the argument homepage/hostname results in cross site scripting. The attack can be launched rem...
CVE-2026-3662
- EPSS 17.96%
- Veröffentlicht 07.03.2026 13:32:09
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability has been found in Wavlink WL-NU516U1 240425. This vulnerability affects the function usb_p910 of the file /cgi-bin/adm.cgi. Such manipulation of the argument Pr_mode leads to command injection. It is possible to launch the attack remo...
CVE-2026-3661
- EPSS 17.49%
- Veröffentlicht 07.03.2026 13:32:07
- Zuletzt bearbeitet 29.04.2026 01:00:01
A flaw has been found in Wavlink WL-NU516U1 240425. This affects the function ota_new_upgrade of the file /cgi-bin/adm.cgi. This manipulation of the argument model causes command injection. It is possible to initiate the attack remotely. The exploit ...
CVE-2026-3613
- EPSS 0.71%
- Veröffentlicht 06.03.2026 01:02:07
- Zuletzt bearbeitet 10.03.2026 18:30:01
A vulnerability was identified in Wavlink WL-NU516U1 V240425. This vulnerability affects the function sub_401A0C of the file /cgi-bin/login.cgi. Such manipulation of the argument ipaddr leads to stack-based buffer overflow. It is possible to launch t...