Ghostwire

CVE-2026-36958: A denial-of-service vulnerability exists in the U-SPEED N300 V1.0.0 wireless router. By sending a large number of...

HIGH CVSS 7.5

Published: April 30, 2026 | Last Modified: April 30, 2026

Description

A denial-of-service vulnerability exists in the U-SPEED N300 V1.0.0 wireless router. By sending a large number of concurrent HTTP requests to random or non-existent endpoints on the web management interface, an attacker can exhaust system resources in the embedded Boa HTTP server. This causes the router web interface to become unresponsive and may require manual reboot to restore normal operation.

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

Security Coverage (1 articles)

References