WAVLINK wl-nu516u1 firmware是中国WAVLINK公司的一款一套无线网卡的固件程序。 WAVLINK wl-nu516u1 firmware 708c073-mt7628版本存在命令注入漏洞,该漏洞源于adm.cgi文件的set_sys_adm函数存在os命令注入,可能导致远程执行任意命令。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Wavlink | WL-NU516U1 | 708c073-mt7628 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Wavlink | WL-NU516U1 | 708c073-mt7628 |
cpe:2.3:o:wavlink:wl-nu516u1_firmware:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-18589 | 9.8 CRITICAL | Wavlink WL-NU516U1 nas.cgi change_password stack-based overflow |
| CVE-2026-18588 | 9.8 CRITICAL | Wavlink WL-NU516U1 nas.cgi fgets stack-based overflow |
| CVE-2026-18607 | 8.8 HIGH | Wavlink NU516 lighttpd upload.cgi strcpy stack-based overflow |
| CVE-2026-18587 | 7.5 HIGH | Wavlink WL-NU516U1 Config Import os command injection |
No comments yet