Metrics
Affected Vendors & Products
Fri, 26 Sep 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 26 Sep 2025 11:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Wavlink
Wavlink wl-nu516u1 |
|
Vendors & Products |
Wavlink
Wavlink wl-nu516u1 |
Thu, 25 Sep 2025 19:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A weakness has been identified in Wavlink NU516U1. Affected by this vulnerability is the function sub_401B30 of the file /cgi-bin/firewall.cgi. This manipulation of the argument remoteManagementEnabled causes command injection. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | Wavlink NU516U1 firewall.cgi sub_401B30 command injection | |
Weaknesses | CWE-74 CWE-77 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-09-25T19:32:05.493Z
Updated: 2025-09-26T17:57:04.542Z
Reserved: 2025-09-25T10:06:51.110Z
Link: CVE-2025-10964

Updated: 2025-09-26T17:39:21.932Z

Status : Awaiting Analysis
Published: 2025-09-25T20:15:34.290
Modified: 2025-09-26T18:15:33.503
Link: CVE-2025-10964

No data.