Metrics
Affected Vendors & Products
Thu, 02 Oct 2025 20:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Wavlink wl-wn578w2 Firmware | |
| CPEs | cpe:2.3:h:wavlink:wl-wn578w2:-:*:*:*:*:*:*:* cpe:2.3:o:wavlink:wl-wn578w2_firmware:m78w2_v221110:*:*:*:*:*:*:* | |
| Vendors & Products | Wavlink wl-wn578w2 Firmware | 
Mon, 15 Sep 2025 10:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Wavlink Wavlink wl-wn578w2 | |
| Vendors & Products | Wavlink Wavlink wl-wn578w2 | 
Fri, 12 Sep 2025 19:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
Fri, 12 Sep 2025 18:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A vulnerability has been found in Wavlink WL-WN578W2 221110. The affected element is an unknown function of the file /sysinit.html. The manipulation of the argument newpass/confpass leads to weak password recovery. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Wavlink WL-WN578W2 sysinit.html password recovery | |
| Weaknesses | CWE-640 | |
| References |  | |
| Metrics | cvssV2_0 
 
 
 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: VulDB
Published: 2025-09-12T18:02:05.947Z
Updated: 2025-09-12T18:15:23.736Z
Reserved: 2025-09-12T08:22:32.239Z
Link: CVE-2025-10322
 Vulnrichment
                        Vulnrichment
                    Updated: 2025-09-12T18:15:15.909Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2025-09-12T18:15:33.877
Modified: 2025-10-02T19:54:11.603
Link: CVE-2025-10322
 Redhat
                        Redhat
                    No data.