A vulnerability has been found in Wavlink WL-NU516U1 240425. This vulnerability affects the function usb_p910 of the file /cgi-bin/adm.cgi. Such manipulation of the argument Pr_mode leads to command injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure.
Metrics
Affected Vendors & Products
References
History
Sat, 07 Mar 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in Wavlink WL-NU516U1 240425. This vulnerability affects the function usb_p910 of the file /cgi-bin/adm.cgi. Such manipulation of the argument Pr_mode leads to command injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure. | |
| Title | Wavlink WL-NU516U1 adm.cgi usb_p910 command injection | |
| First Time appeared |
Wavlink
Wavlink wl-nu516u1 Firmware |
|
| Weaknesses | CWE-74 CWE-77 |
|
| CPEs | cpe:2.3:o:wavlink:wl-nu516u1_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Wavlink
Wavlink wl-nu516u1 Firmware |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-03-07T13:32:09.862Z
Reserved: 2026-03-06T20:29:07.398Z
Link: CVE-2026-3662
No data.
Status : Received
Published: 2026-03-07T14:16:06.357
Modified: 2026-03-07T14:16:06.357
Link: CVE-2026-3662
No data.
OpenCVE Enrichment
No data.