← Back

Wf2780 Firmware

wf2780_firmware

Vendor: Netis Systems • 4 CVEs

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Netis Systems
1Wf2780 Firmware
Jun 17, 2026
Aug 13, 2025
N/A· v4
7.5 HIGH· v3
N/A· v2
A null pointer dereference vulnerability was discovered in Netis WF2780 v2.2.35445. The vulnerability exists in the FUN_0048a728 function of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling t...Show more
A null pointer dereference vulnerability was discovered in Netis WF2780 v2.2.35445. The vulnerability exists in the FUN_0048a728 function of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling the CONTENT_LENGTH variable, causing the program to crash and potentially leading to a denial-of-service (DoS) attack.Show less
1Netis Systems
1Wf2780 Firmware
Jun 17, 2026
Feb 22, 2024
N/A· v4
8.0 HIGH· v3
N/A· v2
Netis WF2780 v2.1.40144 was discovered to contain a command injection vulnerability via the config_sequence parameter in other_para of cgitest.cgi.
1Netis Systems
1Wf2780 Firmware
Jun 17, 2026
Feb 22, 2024
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Netis WF2780 v2.1.40144 was discovered to contain a command injection vulnerability via the wps_ap_ssid5g parameter
1Netis Systems
2Wf2411 Firmware
Wf2780 Firmware
Jun 17, 2026
Feb 18, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Netis WF2780 2.3.40404 and WF2411 1.1.29629 devices allow Shell Metacharacter Injection into the ping command, leading to remote code execution.