CVE-2026-5571

A vulnerability was identified in Technostrobe HI-LED-WR120-G2 5.5.0.1R6.03.30. The impacted element is an unknown function of the file /fs of the component Configuration Data Handler. Such manipulation of the argument File leads to information disclosure. It is possible to launch the attack remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
References
Link Resource
https://github.com/shiky8/my--cve-vulnerability-research/blob/main/my_VulnDB_cves/CVE-TECHNOSTROBE-03-InfoDisclosure.md Exploit Mitigation Third Party Advisory
https://vuldb.com/submit/783324 Third Party Advisory VDB Entry
https://vuldb.com/vuln/355341 Third Party Advisory VDB Entry
https://vuldb.com/vuln/355341/cti Permissions Required VDB Entry
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:technostrobe:hi-led-wr120-g2_firmware:5.5.0.1r6.03.30:*:*:*:*:*:*:*
cpe:2.3:h:technostrobe:hi-led-wr120-g2:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-04-05 14:16

Updated : 2026-07-24 20:10


NVD link : CVE-2026-5571

Mitre link : CVE-2026-5571

CVE.ORG link : CVE-2026-5571


JSON object : View

Products Affected

technostrobe

  • hi-led-wr120-g2
  • hi-led-wr120-g2_firmware
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

CWE-284

Improper Access Control