LIVE · cybersecurity feed
Live wire
cve recordcritical

CVE-2026-4163

Published
CVSS9.8
Severitycritical
WeaknessCWE-74
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Description

A vulnerability was detected in Wavlink WL-WN579A3 220323. This issue affects the function SetName/GuestWifi of the file /cgi-bin/wireless.cgi of the component POST Request Handler. Performing a manipulation results in command injection. It is possible to initiate the attack remotely. The exploit is now public and may be used. Upgrading the affected component is recommended.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-4163

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-4163.