A denial-of-service vulnerability exists in the U-SPEED N300 V1.0.0 wireless router. By sending a large number of concurrent HTTP requests to random or non-existent endpoints on the web management interface, an attacker can exhaust system resources in the embedded Boa HTTP server. This causes the router web interface to become unresponsive and may require manual reboot to restore normal operation.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| http://u-speed.com |
|
| https://github.com/kirubel-cve/CVE-2026-36958 |
|
History
Thu, 30 Apr 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-400 | |
| Metrics |
cvssV3_1
|
Thu, 30 Apr 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A denial-of-service vulnerability exists in the U-SPEED N300 V1.0.0 wireless router. By sending a large number of concurrent HTTP requests to random or non-existent endpoints on the web management interface, an attacker can exhaust system resources in the embedded Boa HTTP server. This causes the router web interface to become unresponsive and may require manual reboot to restore normal operation. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-04-30T15:37:28.828Z
Reserved: 2026-04-06T00:00:00.000Z
Link: CVE-2026-36958
Updated: 2026-04-30T15:35:47.324Z
Status : Awaiting Analysis
Published: 2026-04-30T15:16:22.963
Modified: 2026-04-30T16:16:42.967
Link: CVE-2026-36958
No data.
OpenCVE Enrichment
No data.