CVE-2018-6391: Netis-Systems WF2419 Firmware

High severity, CVSS 8.8. EPSS: 1% chance of exploitation in the next 30 days.

A cross-site request forgery web vulnerability has been discovered on Netis WF2419 V2.2.36123 devices. A remote attacker is able to delete Address Reservation List settings.

Affected products

Published 2018-01-29. Last modified 2026-06-17.