Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-4166

Опубликовано: 16 мар. 2026
Источник: nvd
CVSS3: 3.5
CVSS2: 4
EPSS Низкий

Описание

A vulnerability was found in Wavlink WL-NU516U1 240425. The impacted element is the function sub_404F68 of the file /cgi-bin/login.cgi. The manipulation of the argument homepage/hostname results in cross site scripting. The attack can be launched remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure.

EPSS

Процентиль: 10%
0.00035
Низкий

3.5 Low

CVSS3

4 Medium

CVSS2

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 3.5
github
25 дней назад

A vulnerability was found in Wavlink WL-NU516U1 240425. The impacted element is the function sub_404F68 of the file /cgi-bin/login.cgi. The manipulation of the argument homepage/hostname results in cross site scripting. The attack can be launched remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure.

EPSS

Процентиль: 10%
0.00035
Низкий

3.5 Low

CVSS3

4 Medium

CVSS2

Дефекты

CWE-79