CVE-2026-18587: OS Command Injection in Wavlink WL-NU516U1
CVE-2026-18587 is a high-severity OS command injection vulnerability in the Wavlink WL-NU516U1 device, specifically in an unknown function of the Config Import component. The vulnerability arises from manipulation of the Password argument, allowing remote attackers to execute OS commands. Exploitation is considered difficult due to high complexity, but a public exploit exists. The vendor responded promptly and released a fixed version.
AI Analysis
Technical Summary
This vulnerability affects Wavlink WL-NU516U1 version 708c073-mt7628. An attacker can remotely exploit a flaw in the Config Import component by manipulating the Password argument, leading to OS command injection. The attack complexity is high, and no privileges or user interaction are required, but the exploitability is difficult. The vendor was contacted early and quickly released a fixed version of the product. The CVSS 4.0 base score is 7.7, indicating high severity.
Potential Impact
Successful exploitation allows remote attackers to execute arbitrary OS commands on the affected device, potentially compromising system integrity and confidentiality. The vulnerability does not require privileges or user interaction but is difficult to exploit due to high complexity. No known exploits are reported in the wild at this time.
Mitigation Recommendations
A fixed version of the affected product has been released by the vendor following early notification. It is strongly advised to upgrade to the fixed version to remediate this vulnerability. Patch status is not explicitly detailed but vendor response indicates an official fix is available.
CVE-2026-18587: OS Command Injection in Wavlink WL-NU516U1
Description
CVE-2026-18587 is a high-severity OS command injection vulnerability in the Wavlink WL-NU516U1 device, specifically in an unknown function of the Config Import component. The vulnerability arises from manipulation of the Password argument, allowing remote attackers to execute OS commands. Exploitation is considered difficult due to high complexity, but a public exploit exists. The vendor responded promptly and released a fixed version.
CVSS v4.0
Score 7.7high
Affected software
Wavlink
WL-NU516U1
pkg:github/oduoke567/WAVLINK-NU516U1-2026-05-1Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
This vulnerability affects Wavlink WL-NU516U1 version 708c073-mt7628. An attacker can remotely exploit a flaw in the Config Import component by manipulating the Password argument, leading to OS command injection. The attack complexity is high, and no privileges or user interaction are required, but the exploitability is difficult. The vendor was contacted early and quickly released a fixed version of the product. The CVSS 4.0 base score is 7.7, indicating high severity.
Potential Impact
Successful exploitation allows remote attackers to execute arbitrary OS commands on the affected device, potentially compromising system integrity and confidentiality. The vulnerability does not require privileges or user interaction but is difficult to exploit due to high complexity. No known exploits are reported in the wild at this time.
Mitigation Recommendations
A fixed version of the affected product has been released by the vendor following early notification. It is strongly advised to upgrade to the fixed version to remediate this vulnerability. Patch status is not explicitly detailed but vendor response indicates an official fix is available.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- VulDB
- Date Reserved
- 2026-08-02T20:33:24.850Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 6a703650bf32cb7a341831b8
Added to database: 08/03/2026, 06:33:52 UTC
Last enriched: 08/10/2026, 14:54:30 UTC
Last updated: 09/17/2026, 22:01:33 UTC
Views: 49
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.