Search: "wavlink"

207 CVEs found

A vulnerability in live_check.shtml of WAVLINK WN535 G3 M35G3R.V5030.180927 allows attackers to obtain sensitive router information via execution of the exec cmd function.

Published: 2022-06-14
Products: 2
Vendors:
wavlink

A vulnerability in live_mfg.shtml of WAVLINK WN535 G3 M35G3R.V5030.180927 allows attackers to obtain sensitive router information via execution of the exec cmd function.

Published: 2022-06-14
Products: 2
Vendors:
wavlink

A vulnerability in /cgi-bin/ExportAllSettings.sh of WAVLINK WN579 X3 M79X3.V5030.180719 allows attackers to obtain sensitive router information via a crafted POST request.

Published: 2022-06-14
Products: 2
Vendors:
wavlink
CVE-2022-34592
9.8 CRITICAL

Wavlink WL-WN575A3 RPT75A3.V4300.201217 was discovered to contain a command injection vulnerability via the function obtw. This vulnerability allows attackers to execute arbitrary commands via a craft...

Published: 2022-07-07
Products: 2
Vendors:
wavlink

A vulnerability, which was classified as critical, was found in WAVLINK WN535K2 and WN535K3. This affects an unknown part of the file /cgi-bin/mesh.cgi?page=upgrade. The manipulation of the argument k...

Published: 2022-07-20
Products: 4
Vendors:
wavlink

A vulnerability has been found in WAVLINK WN535K2 and WN535K3 and classified as critical. This vulnerability affects unknown code of the file /cgi-bin/nightled.cgi. The manipulation of the argument st...

Published: 2022-07-20
Products: 4
Vendors:
wavlink

A vulnerability was found in WAVLINK WN535K2 and WN535K3 and classified as critical. This issue affects some unknown processing of the file /cgi-bin/touchlist_sync.cgi. The manipulation of the argumen...

Published: 2022-07-20
Products: 4
Vendors:
wavlink
CVE-2022-34045
9.8 CRITICAL

Wavlink WN530HG4 M30HG4.V5030.191116 was discovered to contain a hardcoded encryption/decryption key for its configuration files at /etc_ro/lighttpd/www/cgi-bin/ExportAllSettings.sh.

Published: 2022-07-20
Products: 2
Vendors:
wavlink

An access control issue in Wavlink WN533A8 M33A8.V5030.190716 allows attackers to obtain usernames and passwords via view-source:http://IP_ADDRESS/sysinit.shtml?r=52300 and searching for [logincheck(u...

Published: 2022-07-20
Products: 2
Vendors:
wavlink

An access control issue in Wavlink WN530HG4 M30HG4.V5030.191116 allows attackers to obtain usernames and passwords via view-source:http://IP_ADDRESS/set_safety.shtml?r=52300 and searching for [var sys...

Published: 2022-07-20
Products: 2
Vendors:
wavlink
CVE-2022-34048
6.1 MEDIUM

Wavlink WN533A8 M33A8.V5030.190716 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the login_page parameter.

Published: 2022-07-20
Products: 2
Vendors:
wavlink
CVE-2022-34049
5.3 MEDIUM

An access control issue in Wavlink WN530HG4 M30HG4.V5030.191116 allows unauthenticated attackers to download log files and configuration data.

Published: 2022-07-20
Products: 2
Vendors:
wavlink

WAVLINK WN579 X3 M79X3.V5030.191012/M79X3.V5030.191012 contains an information leak which allows attackers to obtain the key information via accessing the messages.txt page.

Published: 2022-07-25
Products: 2
Vendors:
wavlink

An access control issue in Wavlink WiFi-Repeater RPTA2-77W.M4300.01.GD.2017Sep19 allows attackers to obtain the system key information and execute arbitrary commands via accessing the page syslog.shtm...

Published: 2022-07-25
Products: 1
Vendors:
wavlink
CVE-2022-34572
5.7 MEDIUM

An access control issue in Wavlink WiFi-Repeater RPTA2-77W.M4300.01.GD.2017Sep19 allows attackers to obtain the telnet password via accessing the page tftp.txt.

Published: 2022-07-25
Products: 1
Vendors:
wavlink
CVE-2022-34573
6.3 MEDIUM

An access control issue in Wavlink WiFi-Repeater RPTA2-77W.M4300.01.GD.2017Sep19 allows attackers to arbitrarily configure device settings via accessing the page mb_wifibasic.shtml.

Published: 2022-07-25
Products: 1
Vendors:
wavlink
CVE-2022-34574
5.7 MEDIUM

An access control issue in Wavlink WiFi-Repeater RPTA2-77W.M4300.01.GD.2017Sep19 allows attackers to obtain the key information of the device via accessing Tftpd32.ini.

Published: 2022-07-25
Products: 1
Vendors:
wavlink
CVE-2022-34575
5.7 MEDIUM

An access control issue in Wavlink WiFi-Repeater RPTA2-77W.M4300.01.GD.2017Sep19 allows attackers to obtain the key information of the device via accessing fctest.shtml.

Published: 2022-07-25
Products: 1
Vendors:
wavlink

A vulnerability in /cgi-bin/ExportAllSettings.sh of WAVLINK WN535 G3 M35G3R.V5030.180927 allows attackers to execute arbitrary code via a crafted POST request.

Published: 2022-07-25
Products: 2
Vendors:
wavlink
CVE-2022-34577
9.8 CRITICAL

A vulnerability in adm.cgi of WAVLINK WN535 G3 M35G3R.V5030.180927 allows attackers to execute arbitrary code via a crafted POST request.

Published: 2022-07-25
Products: 2
Vendors:
wavlink