CVE detail
CVE-2026-3704
A vulnerability has been found in Wavlink NU516U1 251208. This vulnerability affects the function sub_405B2C of the file /cgi-bin/firewall.cgi of the component Incomplete Fix CVE-2025-10959. The manipulation leads to command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component. The vendor was contacted early, responded in a very professional manner and quickly released a fixed version of the affected product.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 19.5 · diversity 11.5 · KEV 0.0 · OTX 0.0 · PoC 4.5
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
6 source links · newest first
- https://vuldb.com/?submit.759233vuldb.com
No excerpt available.
Exploitvuldb.comMar 8, 2026, 4:15 AM - https://vuldb.com/?id.349650vuldb.com
No excerpt available.
Exploitvuldb.comMar 8, 2026, 4:15 AM - https://vuldb.com/?ctiid.349650vuldb.com
No excerpt available.
Exploitvuldb.comMar 8, 2026, 4:15 AM No excerpt available.
Exploitgithub.comMar 8, 2026, 4:15 AMNo excerpt available.
Exploitgithub.comMar 8, 2026, 4:15 AM- https://dl.wavlink.com/firmware/RD/WINSTAR_NU516U1-WO-A-2026-02-27-2fcf6ae-mt7628-squashfs-sysupgrade.bindl.wavlink.com
No excerpt available.
referencedl.wavlink.comMar 8, 2026, 4:15 AM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
1 repository references · best confidence 0.90 · max 0 stars
- Wlz1112/Wavlink-NU516U1-V251208-High confidencegithubNVD Exploit reference0 starsDiscovered Jul 12, 2026, 6:20 PM
NVD labels the source link as Exploit; this is not independent verification of the repository's code.
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-3662CVSS 2.0 · Low
A vulnerability has been found in Wavlink WL-NU516U1 240425. This vulnerability affects the function usb_p910 of the file /cgi-bin/adm.cgi. Such manipulation of the argument Pr_mo…
- CVE-2026-3661CVSS 2.0 · Low
A flaw has been found in Wavlink WL-NU516U1 240425. This affects the function ota_new_upgrade of the file /cgi-bin/adm.cgi. This manipulation of the argument model causes command…
- CVE-2026-3612CVSS 7.3 · High
A vulnerability was determined in Wavlink WL-NU516U1 V240425. This affects the function sub_405AF4 of the file /cgi-bin/adm.cgi of the component OTA Online Upgrade. This manipulat…
- CVE-2026-2615CVSS 7.3 · High
A flaw has been found in Wavlink WL-NU516U1 up to 20251208. The affected element is the function singlePortForwardDelete of the file /cgi-bin/firewall.cgi. Executing a manipulatio…
- CVE-2025-10964CVSS 2.1 · Low
A weakness has been identified in Wavlink NU516U1. Affected by this vulnerability is the function sub_401B30 of the file /cgi-bin/firewall.cgi. This manipulation of the argument r…
- CVE-2025-10963CVSS 2.1 · Low
A security flaw has been discovered in Wavlink NU516U1 M16U1_V240425. Affected is the function sub_4016F0 of the file /cgi-bin/firewall.cgi. The manipulation of the argument del_f…