CVE-2026-7503

· NIST NVD ↗

A vulnerability was detected in code-projects for Plugin 4.1.2cu.5137. The impacted element is the function setWiFiMultipleConfig in the library /lib/cste_modules/wireless.so of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument wepkey2 results in buffer overflow. The attack can be launched remotely. The exploit is now public and may be used.

HIGH
CVSS severity
8.8
CVSS base score
2026-04-30
Published

CWE codes

CWE-119CWE-120

Sources