CVE-2026-30704
Received
Received - Intake
Unprotected UART Interface in WDR201A WiFi Extender Enables Hardware Access
Publication date: 2026-03-18
Last updated on: 2026-03-19
Assigner: MITRE
Description
Description
The WiFi Extender WDR201A (HW V2.1, FW LFMZX28040922V1.02) exposes an unprotected UART interface through accessible hardware pads on the PCB
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
Currently, no data is known.
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-912 | The product contains functionality that is not documented, not part of the specification, and not accessible through an interface or command sequence that is obvious to the product's users or administrators. |