Metrics
Affected Vendors & Products
Mon, 15 Sep 2025 10:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Wavlink
Wavlink wl-wn578w2 |
|
Vendors & Products |
Wavlink
Wavlink wl-wn578w2 |
Fri, 12 Sep 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 12 Sep 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability has been found in Wavlink WL-WN578W2 221110. The affected element is an unknown function of the file /sysinit.html. The manipulation of the argument newpass/confpass leads to weak password recovery. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | Wavlink WL-WN578W2 sysinit.html password recovery | |
Weaknesses | CWE-640 | |
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-09-12T18:02:05.947Z
Updated: 2025-09-12T18:15:23.736Z
Reserved: 2025-09-12T08:22:32.239Z
Link: CVE-2025-10322

Updated: 2025-09-12T18:15:15.909Z

Status : Awaiting Analysis
Published: 2025-09-12T18:15:33.877
Modified: 2025-09-15T15:21:42.937
Link: CVE-2025-10322

No data.