PT-2026-8359 · Wavlink · Wavlink Wl-Nu516U1

Haimianbaobao

·

Published

2026-02-16

·

Updated

2026-02-16

·

CVE-2026-2565

CVSS v2.0
6.8
VectorAV:N/AC:H/Au:M/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Wavlink WL-NU516U1 version 20251208
Description A flaw exists in the function
sub 40785C
of the file '/cgi-bin/adm.cgi'. Manipulation of the
time zone
argument leads to a stack-based buffer overflow. This can be triggered remotely and is considered to have high complexity, though exploitation is difficult. The exploit has been publicly released. The vendor was notified but did not respond.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Stack Overflow

Weakness Enumeration

Related Identifiers

CVE-2026-2565

Affected Products

Wavlink Wl-Nu516U1