Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.3
CVE-2026-74843: Wavlink WN531P3/WN535M1: Remote Code Execution via Cookie Overflow
CVE-2026-74843 · published 18 days ago
Summary
The Export Pingortrace CGI feature in Wavlink WN531P3 and WN535M1 devices is vulnerable to a remote attack. An attacker can exploit this vulnerability by sending a specially crafted cookie, potentially allowing them to execute unauthorized code on the device. We recommend that you contact Wavlink's support team to request a software update to fix this issue.
What to do
The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| wavlink | wn531p3 | V250922 |
| wavlink | wn535m1 | V250922 |
Original advisory text
Wavlink WN531P3/WN535M1 Export Pingortrace CGI export_pingortrace.cgi strcpy stack-based overflow
A vulnerability was determined in Wavlink WN531P3 and WN535M1 V250922. Affected by this vulnerability is the function strcpy of the file /etc/lighttpd/www/cgi-bin/export_pingortrace.cgi of the component Export Pingortrace CGI. Executing a manipulation of the argument HTTP_COOKIE can lead to stack-based buffer overflow. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure.
References
- https://vuldb.com/vuln/391205 vdb-entry technical-description
- https://vuldb.com/vuln/391205/cti signature permissions-required
- https://vuldb.com/cve/CVE-2026-74843 third-party-advisory
- https://vuldb.com/submit/875331 third-party-advisory
- https://github.com/wcndsb-sketch/WAVLINK_WN535M1-M35M1_V250922-Buffer-Overflow/b... exploit
Severity
9.3
Critical
CVSS 3.1: 10.0 (MITRE)
Exploitation
EPSS <1%
Type
CWE-121Stack-based Buffer Overflow
CWE-119Buffer Overflow
Timeline
Published17 Aug 2026
Updated3 Sep 2026
First seen17 Aug 2026
Monitor software like this
Free during beta