Orizon[verified]@OrizonCyberPatch
A CVE-2026-4164 critical flaw was reported in the Wavlink WL-WN578W2 device, affecting several functions; a patch is now available.
The Hacker Wire@TheHackerWireDisclosure
A critical vulnerability was disclosed in the Wavlink WL‑WN578W2 router, affecting specific CGI functions; details were published in an online article.
CVEFind.com@CveFindComDisclosure
The notice announces a critical remote command injection flaw (CVE-2026-4164) found in the Wavlink WL-WN578W2 device, describing how manipulation of certain configuration functions can enable command execution. No proofs of concept, exploit code, or patches are provided.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
A command injection vulnerability (CVE‑2026‑4164) was disclosed for the Wavlink WL‑WN578W2 firmware 221110, with technical details available on Vulmon but no PoC, exploit code, patch, or evidence of active exploitation.
CVE@CVEnewDisclosure
Flaw discovered in a Wavlink router affecting specific CGI functions; no PoC, exploit, patch, or active exploitation details provided.
CyberDudeBivash® | Global Cybersecurity Company@cyberbivashDisclosure
The alert announces CVE-2026-4164 as a command‑injection flaw in Wavlink WL‑WN578W2’s wireless.cgi, providing an Intel report link but no PoC, exploit, patch, or evidence of active exploitation.
CyberDudeBivash® | Global Cybersecurity Company@cyberbivashGeneral
The post alerts to CVE‑2026‑4164, a command‑injection flaw in Wavlink routers, providing concise technical details but no PoC, exploit code, active‑exploitation confirmation, or patch information.
0day Signal@0dayPublishingExploit
The post announces CVE-2026-4164, a flaw in Wavlink routers that allows unauthenticated remote code execution via a public exploit, and reports that the vulnerability is already being used to add devices to a botnet.