← volver
CVE-2025-10321

Wavlink WL-WN578W2 live_online.shtml information disclosure

CVSS 6.9 MEDIUMEPSS 0.5%CWE-200CWE-284
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 6.9EPSS 0.5%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
12 sep 2025Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A flaw has been found in Wavlink WL-WN578W2 221110. Impacted is an unknown function of the file /live_online.shtml. Executing manipulation can lead to information disclosure. The attack can be executed remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P
Productos afectados
Wavlink · WL-WN578W2

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →