A vulnerability was detected in Wavlink WL-WN579A3 220323. This issue affects the function SetName/GuestWifi of the file /cgi-bin/wireless.cgi of the component POST Request Handler. Performing a manipulation results in command injection. It is possible to initiate the attack remotely. The exploit is now public and may be used. Upgrading the affected component is recommended.
Metrics
Affected Vendors & Products
References
History
Mon, 16 Mar 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wavlink wl-wn579a3
|
|
| Vendors & Products |
Wavlink wl-wn579a3
|
Sat, 14 Mar 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in Wavlink WL-WN579A3 220323. This issue affects the function SetName/GuestWifi of the file /cgi-bin/wireless.cgi of the component POST Request Handler. Performing a manipulation results in command injection. It is possible to initiate the attack remotely. The exploit is now public and may be used. Upgrading the affected component is recommended. | |
| Title | Wavlink WL-WN579A3 POST Request wireless.cgi GuestWifi command injection | |
| First Time appeared |
Wavlink
Wavlink wl-wn579a3 Firmware |
|
| Weaknesses | CWE-74 CWE-77 |
|
| CPEs | cpe:2.3:o:wavlink:wl-wn579a3_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Wavlink
Wavlink wl-wn579a3 Firmware |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-03-14T22:32:10.502Z
Updated: 2026-03-14T22:32:10.502Z
Reserved: 2026-03-14T08:28:57.337Z
Link: CVE-2026-4163
No data.
Status : Awaiting Analysis
Published: 2026-03-16T14:19:55.143
Modified: 2026-03-16T14:53:07.390
Link: CVE-2026-4163
No data.