Metrics
Affected Vendors & Products
Thu, 02 Oct 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wavlink wl-wn578w2 Firmware
|
|
| CPEs | cpe:2.3:h:wavlink:wl-wn578w2:-:*:*:*:*:*:*:* cpe:2.3:o:wavlink:wl-wn578w2_firmware:m78w2_v221110:*:*:*:*:*:*:* |
|
| Vendors & Products |
Wavlink wl-wn578w2 Firmware
|
Mon, 15 Sep 2025 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wavlink
Wavlink wl-wn578w2 |
|
| Vendors & Products |
Wavlink
Wavlink wl-wn578w2 |
Fri, 12 Sep 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 12 Sep 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in Wavlink WL-WN578W2 221110. The affected element is an unknown function of the file /sysinit.html. The manipulation of the argument newpass/confpass leads to weak password recovery. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Wavlink WL-WN578W2 sysinit.html password recovery | |
| Weaknesses | CWE-640 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-09-12T18:02:05.947Z
Updated: 2025-09-12T18:15:23.736Z
Reserved: 2025-09-12T08:22:32.239Z
Link: CVE-2025-10322
Updated: 2025-09-12T18:15:15.909Z
Status : Analyzed
Published: 2025-09-12T18:15:33.877
Modified: 2025-10-02T19:54:11.603
Link: CVE-2025-10322
No data.