PT-2026-8359 · Wavlink · Wavlink Wl-Nu516U1
Haimianbaobao
·
Published
2026-02-03
·
Updated
2026-02-16
·
CVE-2026-2565
CVSS v2.0
7.1
High
| Vector | AV:N/AC:H/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Wavlink WL-NU516U1 version 20251208
Description
A flaw exists in the function
sub 40785C of the file '/cgi-bin/adm.cgi'. Manipulation of the time zone argument leads to a stack-based buffer overflow. This can be triggered remotely and is considered to have high complexity, though exploitation is difficult. The exploit has been publicly released. The vendor was notified but did not respond.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Buffer Overflow
Stack Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Wavlink Wl-Nu516U1