Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 enables WPS 2.0 by default with a weak lockout policy (60-second lockout after 10 attempts).
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 03 Jun 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | WPS 2.0 Weak Lockout Policy Enables Brute‑Force Attacks | |
| Weaknesses | CWE-307 |
Wed, 03 Jun 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 enables WPS 2.0 by default with a weak lockout policy (60-second lockout after 10 attempts). | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-06-03T16:11:30.382Z
Reserved: 2026-04-06T00:00:00.000Z
Link: CVE-2026-36612
No data.
Status : Received
Published: 2026-06-03T18:16:22.487
Modified: 2026-06-03T18:16:22.487
Link: CVE-2026-36612
No data.
OpenCVE Enrichment
Updated: 2026-06-03T18:30:36Z
Weaknesses