Multiple buffer overflow vulnerabilities in Wavlink WL-WN575A3 RPT75A3.V4300, which are caused by not performing strict length checks on user-controlled data. By successfully exploiting the vulnerabilities, attackers can crash the remote devices or execute arbitrary commands without any authorization verification.
References
| Link | Resource |
|---|---|
| https://gist.github.com/XiaoCurry/87f3a4412c46fa9c27d2f723136920b8 | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
07 Oct 2025, 20:56
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://gist.github.com/XiaoCurry/87f3a4412c46fa9c27d2f723136920b8 - Exploit, Third Party Advisory | |
| First Time |
Wavlink wl-wn575a3 Firmware
Wavlink wl-wn575a3 Wavlink |
|
| CPE | cpe:2.3:o:wavlink:wl-wn575a3_firmware:rpt75a3.v4300:*:*:*:*:*:*:* cpe:2.3:h:wavlink:wl-wn575a3:-:*:*:*:*:*:*:* |
13 Feb 2025, 18:18
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-120 | |
| Summary |
|
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.1 |
11 Feb 2025, 20:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-02-11 20:15
Updated : 2025-10-07 20:56
NVD link : CVE-2025-25528
Mitre link : CVE-2025-25528
CVE.ORG link : CVE-2025-25528
JSON object : View
Products Affected
wavlink
- wl-wn575a3
- wl-wn575a3_firmware
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
