CVE-2026-7503: code-projects for Plugin cstecgi.cgi setWiFiMultipleConfig buffer overflow
A vulnerability was detected in code-projects for Plugin 4.1.2cu.5137. The impacted element is the function setWiFiMultipleConfig in the library /lib/cste_modules/wireless.so of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument wepkey2 results in buffer overflow. The attack can be launched remotely. The exploit is now public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-7503?
CVE-2026-7503 is rated as a high severity vulnerability due to the potential for a buffer overflow leading to arbitrary code execution.
How do I fix CVE-2026-7503?
To fix CVE-2026-7503, update the Plugin cstecgi.cgi to the latest version that addresses this vulnerability.
What versions are affected by CVE-2026-7503?
CVE-2026-7503 affects version 4.1.2cu.5137 of the cstecgi.cgi plugin.
What is the impact of CVE-2026-7503?
The impact of CVE-2026-7503 includes the potential for an attacker to exploit the buffer overflow to execute arbitrary code on the affected system.
Is CVE-2026-7503 remotely exploitable?
Yes, CVE-2026-7503 is remotely exploitable, allowing attackers to exploit the vulnerability over the network.