CVE-2019-11877: Pix-Link Lv-WR09 Firmware

Medium severity, CVSS 6.1. EPSS: 0.9% chance of exploitation in the next 30 days.

XSS on the PIX-Link Repeater/Router LV-WR09 with firmware v28K.MiniRouter.20180616 allows attackers to steal credentials without being connected to the network. The attack vector is a crafted ESSID.

Affected products

  • Pix-Link Lv-WR09 Firmware: version 28k.minirouter.20180616 only

Published 2019-06-10. Last modified 2026-06-17.