CVE-2026-6559: Wavlink WL-WN579A3 login.cgi sub_401F80 cross site scripting
A weakness has been identified in Wavlink WL-WN579A3 220323. This affects the function sub401F80 of the file /cgi-bin/login.cgi. This manipulation of the argument Hostname causes cross site scripting. Remote exploitation of the attack is possible. Upgrading the affected component is recommended. The vendor was contacted early, responded in a very professional manner and quickly released a fixed version of the affected product.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-6559?
CVE-2026-6559 is classified as a medium severity cross site scripting vulnerability.
How do I fix CVE-2026-6559?
To fix CVE-2026-6559, sanitize the input to the Hostname parameter in the login.cgi file to prevent script injection.
Which devices are affected by CVE-2026-6559?
CVE-2026-6559 affects the Wavlink WL-WN579A3 model with firmware version 220323.
What is the impact of CVE-2026-6559?
The impact of CVE-2026-6559 allows an attacker to execute arbitrary JavaScript in the context of the user’s session.
Is CVE-2026-6559 remotely exploitable?
Yes, CVE-2026-6559 can be exploited remotely if the attacker can access the affected login.cgi file.