CVE-2019-7564: Coship RT3050 Firmware
Critical severity, CVSS 9.8. EPSS: 3.1% chance of exploitation in the next 30 days.
An issue was discovered on Shenzhen Coship WM3300 WiFi Router 5.0.0.55 devices. The password reset functionality of the Wireless SSID doesn't require any type of authentication. By making a POST request to the regx/wireless/wl_security_2G.asp URI, the attacker can change the password of the Wi-FI network.
Affected products
- Coship RT3050 Firmware: version 4.0.0.40 only
- Coship RT3052 Firmware: version 4.0.0.48 only
- Coship RT7620 Firmware: version 10.0.0.49 only
- Coship WM3300 Firmware: version 5.0.0.54 only; version 5.0.0.55 only
Published 2019-05-07. Last modified 2026-06-17.