A vulnerability was detected in Wavlink NU516U1 240425. The affected element is the function WifiBasic of the file /cgi-bin/wireless.cgi. Performing a manipulation of the argument AuthMethod/EncrypType results in os command injection. Remote exploitation of the attack is possible. The exploit is now public and may be used. The vendor was contacted early about this disclosure.
Metrics
Affected Vendors & Products
References
History
Sun, 10 May 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in Wavlink NU516U1 240425. The affected element is the function WifiBasic of the file /cgi-bin/wireless.cgi. Performing a manipulation of the argument AuthMethod/EncrypType results in os command injection. Remote exploitation of the attack is possible. The exploit is now public and may be used. The vendor was contacted early about this disclosure. | |
| Title | Wavlink NU516U1 wireless.cgi WifiBasic os command injection | |
| Weaknesses | CWE-77 CWE-78 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-05-10T04:15:09.652Z
Reserved: 2026-05-09T07:54:54.467Z
Link: CVE-2026-8229
No data.
Status : Received
Published: 2026-05-10T05:16:12.737
Modified: 2026-05-10T05:16:12.737
Link: CVE-2026-8229
No data.
OpenCVE Enrichment
Updated: 2026-05-10T05:30:05Z