{"id":"CVE-2026-6058","title":"** UNSUPPORTED WHEN ASSIGNED ** An improper encoding or escaping vulnerability in the CGI program of Zyxel WRE6505 v2 firmware version V1.00(ABDV.3)C0 could allow an adjacent attacker on the WLAN to cause a denial-of-service (DoS) condit…","summary":"** UNSUPPORTED WHEN ASSIGNED ** An improper encoding or escaping vulnerability in the CGI program of Zyxel WRE6505 v2 firmware version V1.00(ABDV.3)C0 could allow an adjacent attacker on the WLAN to cause a denial-of-service (DoS) condit…","severity":"medium","cvss":4.5,"cvssVector":"CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H","cwe":["CWE-116"],"vendor":"zyxel","product":"wre6505_firmware","affected":["wre6505_firmware = v1.00(abdv.3)c0"],"published":"2026-04-21","updated":"2026-07-08","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-6058","references":[{"url":"https://www.zyxel.com/global/en/support/end-of-life","label":"security@zyxel.com.tw"}],"tags":["nvd"],"epss":0.00182,"epssPercentile":0.07995,"ingestedAt":"2026-07-08T03:46:38.659Z","slug":"CVE-2026-6058","body":"## Overview\n\n** UNSUPPORTED WHEN ASSIGNED ** An improper encoding or escaping vulnerability in the CGI program of Zyxel WRE6505 v2 firmware version V1.00(ABDV.3)C0 could allow an adjacent attacker on the WLAN to cause a denial-of-service (DoS) condition in the web management interface by convincing an authenticated administrator to visit the “AP Select” page while a malformed SSID is present.\n\n## Affected\n\n- `wre6505_firmware = v1.00(abdv.3)c0`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":25,"depthScoreParts":{"impact":24.8,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}