Security Advisory

CVE-2025-9149

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-08-19 17:32:06
Last updated 2025-08-19 20:02:23
Assigner VulDB
State PUBLISHED

Description

A vulnerability was determined in Wavlink WL-NU516U1 M16U1_V240425. This impacts the function sub_4032E4 of the file /cgi-bin/wireless.cgi. This manipulation of the argument Guest_ssid causes command injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized.