CVE-2026-18588 | Wavlink WL-NU516U1 708c073-mt7628 nas.cgi fgets CONTENT_LENGTH stack-based overflow

SecurityVulns

A vulnerability identified as critical has been detected in Wavlink WL-NU516U1 708c073-mt7628. This affects the function fgets of the file nas.cgi. The manipulation of the argument CONTENT_LENGTH leads to stack-based buffer overflow.

This vulnerability is referenced as CVE-2026-18588. Remote exploitation of the attack is possible. No exploit is available.

You should upgrade the affected component.

The vendor was contacted early, responded in a very professional manner and quickly released a fixed version of the affected product.VulDB Recent EntriesRead More