CVE-2026-30704

CRITICAL

WiFi Extender WDR201A HW V2.1 FW LFMZX28040922V1.02 - Info Disclosure

Title source: llm
STIX 2.1

Description

The WiFi Extender WDR201A (HW V2.1, FW LFMZX28040922V1.02) exposes an unprotected UART interface through accessible hardware pads on the PCB

Scores

CVSS v3 9.1
EPSS 0.0006
EPSS Percentile 19.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-912
Status published
Published Mar 18, 2026
Tracked Since Mar 18, 2026