cvedb.io
CVE-2026-2567
HIGH · CVSS 7.2
EPSS exploitation probability: 0%
Published 2026-02-16T18:19:45.217 · Last modified 2026-06-17T10:31:20.057

Summary

A vulnerability was detected in Wavlink WL-NU516U1 20251208. This vulnerability affects the function sub_401218 of the file /cgi-bin/nas.cgi. Performing a manipulation of the argument User1Passwd results in stack-based buffer overflow. The attack may be initiated remotely. The exploit is now public and may be used.

Affected products

wavlink — wl-nu516u1_firmware

Does this affect you?

Add your gear to cvedb and we'll alert you only when wavlink ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.