Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Wavlink — Vulnerabilities & Security Advisories 136

Browse all 136 CVE security advisories affecting Wavlink. AI-powered Chinese analysis, POCs, and references for each vulnerability.

WAVLINK operates primarily as a manufacturer of consumer networking hardware, specializing in Wi-Fi routers, range extenders, and USB adapters for home and small office environments. Security audits have identified a significant volume of vulnerabilities within its firmware ecosystem, with 119 Common Vulnerabilities and Exposures currently recorded. These flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation issues, often stemming from inadequate input validation and weak authentication mechanisms in web management interfaces. While the company has not been the subject of a singular, widely publicized catastrophic breach comparable to major IoT botnets, the sheer number of disclosed CVEs indicates systemic weaknesses in its secure development lifecycle. Many of these vulnerabilities allow unauthenticated attackers to gain administrative control or execute arbitrary commands, posing substantial risks to user privacy and network integrity.

Found 17 results / 136Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2026-18590 Wavlink WL-NU516U1 Admin Password adm.cgi set_sys_adm os command injection — WL-NU516U1CWE-78 6.3 Medium2026-08-03
CVE-2026-18589 Wavlink WL-NU516U1 nas.cgi change_password stack-based overflow — WL-NU516U1CWE-121 9.8 Critical2026-08-03
CVE-2026-18588 Wavlink WL-NU516U1 nas.cgi fgets stack-based overflow — WL-NU516U1CWE-121 9.8 Critical2026-08-03
CVE-2026-18587 Wavlink WL-NU516U1 Config Import os command injection — WL-NU516U1CWE-78 7.5 High2026-08-03
CVE-2026-15513 Wavlink WL-NU516U1 adm.cgi wlink_uci_set_value os command injection — WL-NU516U1CWE-78 6.3 Medium2026-07-12
CVE-2026-4861 Wavlink WL-NU516U1 nas.cgi ftext stack-based overflow — WL-NU516U1CWE-121 8.8 High2026-03-26
CVE-2026-4166 Wavlink WL-NU516U1 login.cgi sub_404F68 cross site scripting — WL-NU516U1CWE-79 3.5 Low2026-03-15
CVE-2026-3662 Wavlink WL-NU516U1 adm.cgi usb_p910 command injection — WL-NU516U1CWE-77 4.7 Medium2026-03-07
CVE-2026-3661 Wavlink WL-NU516U1 adm.cgi ota_new_upgrade command injection — WL-NU516U1CWE-77 4.7 Medium2026-03-07
CVE-2026-3613 Wavlink WL-NU516U1 login.cgi sub_401A0C stack-based overflow — WL-NU516U1CWE-121 7.2 High2026-03-06
CVE-2026-3612 Wavlink WL-NU516U1 OTA Online Upgrade adm.cgi sub_405AF4 command injection — WL-NU516U1CWE-77 7.2 High2026-03-06
CVE-2026-2615 Wavlink WL-NU516U1 firewall.cgi singlePortForwardDelete command injection — WL-NU516U1CWE-77 7.2 High2026-02-17
CVE-2026-2567 Wavlink WL-NU516U1 nas.cgi sub_401218 stack-based overflow — WL-NU516U1CWE-121 7.2 High2026-02-16
CVE-2026-2566 Wavlink WL-NU516U1 adm.cgi sub_406194 stack-based overflow — WL-NU516U1CWE-121 7.2 High2026-02-16
CVE-2026-2565 Wavlink WL-NU516U1 adm.cgi sub_40785C stack-based overflow — WL-NU516U1CWE-121 6.6 Medium2026-02-16
CVE-2025-10775 Wavlink WL-NU516U1 login.cgi sub_4012A0 os command injection — WL-NU516U1CWE-78 4.7 Medium2025-09-22
CVE-2025-9149 Wavlink WL-NU516U1 wireless.cgi sub_4032E4 command injection — WL-NU516U1CWE-77 6.3 Medium2025-08-19

This page lists every published CVE security advisory associated with Wavlink. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.