CVE-2026-8229

Severity CVSS v4.0:
LOW
Type:
CWE-77 Command Injection
Publication date:
10/05/2026
Last modified:
10/05/2026

Description

A vulnerability was detected in Wavlink NU516U1 240425. The affected element is the function WifiBasic of the file /cgi-bin/wireless.cgi. Performing a manipulation of the argument AuthMethod/EncrypType results in os command injection. Remote exploitation of the attack is possible. The exploit is now public and may be used. The vendor was contacted early about this disclosure.