CVE-2026-12495 | Mercusys MB115-4G up to 1.9.0 Web Interface /cgi/login http_gdpr_decrypt stack-based overflow
A vulnerability classified as critical has been found in Mercusys MB115-4G up to 1.9.0. This impacts the function http_gdpr_decrypt of the file /cgi/login of the component Web Interface. Performing a manipulation results in stack-based buffer overflow.
This vulnerability was named CVE-2026-12495. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More