Search: "wavlink"

207 CVEs found

CVE-2024-34166
10.0 CRITICAL

An os command injection vulnerability exists in the touchlist_sync.cgi touchlistsync() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted set of HTTP requests can lead to arbitrar...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-34544
9.1 CRITICAL

A command injection vulnerability exists in the wireless.cgi AddMac() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary command execution. An a...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-36258
10.0 CRITICAL

A stack-based buffer overflow vulnerability exists in the touchlist_sync.cgi touchlistsync() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary ...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-36272
9.1 CRITICAL

A buffer overflow vulnerability exists in the usbip.cgi set_info() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to stack-based buffer overflow. An atta...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-36290
10.0 CRITICAL

A buffer overflow vulnerability exists in the login.cgi Goto_chidx() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to stack-based buffer overflow. An at...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-36295
9.1 CRITICAL

A command execution vulnerability exists in the qos.cgi qos_sta() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary command execution. An attac...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-36493
9.1 CRITICAL

A stack-based buffer overflow vulnerability exists in the wireless.cgi set_wifi_basic() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary comma...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-37184
9.1 CRITICAL

A buffer overflow vulnerability exists in the adm.cgi rep_as_bridge() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to stack-based buffer overflow. An a...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-37186
9.1 CRITICAL

An os command injection vulnerability exists in the adm.cgi set_ledonoff() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary code execution. An...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-37357
9.1 CRITICAL

A buffer overflow vulnerability exists in the adm.cgi set_TR069() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to stack-based buffer overflow. An attac...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-38666
9.1 CRITICAL

An external config control vulnerability exists in the openvpn.cgi openvpn_client_setup() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary com...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-39273
9.0 CRITICAL

A firmware update vulnerability exists in the fw_check.sh functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary firmware update. An attacker can pe...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-39280
9.1 CRITICAL

An external config control vulnerability exists in the nas.cgi set_smb_cfg() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary command executio...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-39288
9.1 CRITICAL

A buffer overflow vulnerability exists in the internet.cgi set_add_routing() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to stack-based buffer overflo...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-39294
9.1 CRITICAL

A buffer overflow vulnerability exists in the adm.cgi set_wzdgw4G() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to stack-based buffer overflow. An att...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-39299
9.1 CRITICAL

A buffer overflow vulnerability exists in the qos.cgi qos_sta_settings() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to stack-based buffer overflow. A...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-39357
9.1 CRITICAL

A stack-based buffer overflow vulnerability exists in the wireless.cgi SetName() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary command exec...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-39358
9.1 CRITICAL

A buffer overflow vulnerability exists in the adm.cgi set_wzap() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to stack-based buffer overflow. An attack...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-39359
9.1 CRITICAL

A stack-based buffer overflow vulnerability exists in the wireless.cgi DeleteMac() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary command ex...

Published: 2025-01-14
Products: 2
Vendors:
wavlink
CVE-2024-39360
9.1 CRITICAL

An os command injection vulnerability exists in the nas.cgi remove_dir() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary code execution. An a...

Published: 2025-01-14
Products: 2
Vendors:
wavlink