wavlink

210 tracked vulnerabilities.

CVE-2024-34166 CRITICAL
Wavlink AC3000 M33A8.V5030.210505 - Command Injection
Jan 14, 2025
CVSS 10.0
EPSS 0.10
CVE-2024-21797 CRITICAL
Wavlink AC3000 M33A8.V5030.210505 - Authenticated Remote Code Execution via adm.cgi set_TR069()
Jan 14, 2025
CVSS 9.1
EPSS 0.08
CVE-2024-54747 CRITICAL
WAVLINK WN531P3 202383 - Hardcoded Password in /etc/shadow
Dec 06, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-54745 CRITICAL
WAVLINK WN701AE M01AE_V240305 - Hardcoded Root Password in /etc/shadow
Dec 06, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-10429 HIGH
WAVLINK WN530H4, WN530HG4, WN572HG3 <= 20221028 - Command Injection
Oct 27, 2024
CVSS 7.2
EPSS 0.33
CVE-2024-10428 HIGH
WAVLINK WN530H4, WN530HG4, and WN572HG3 up to 20221028 - Command Injection via dhcpGateway Argument in firewall.cgi
Oct 27, 2024
CVSS 7.2
EPSS 0.01
CVE-2024-10194 HIGH
WAVLINK WN530H4-20221028 - Buffer Overflow
Oct 20, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-10193 MEDIUM
WAVLINK WN530H4/WN530HG4/WN572HG3 <20221028 - Command Injection
Oct 20, 2024
CVSS 4.7
EPSS 0.01
CVE-2024-38897 MEDIUM
WAVLINK WN551K1 - Exposure of Sensitive Information via live_check.shtml
Jun 24, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-38896 MEDIUM
WAVLINK WN551K1 - OS Command Injection via nightled.cgi start_hour Parameter
Jun 24, 2024
CVSS 5.3
EPSS 0.03
CVE-2024-38895 MEDIUM
WAVLINK WN551K1 - Exposure of Sensitive Information via live_mfg.shtml
Jun 24, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-38894 MEDIUM
WAVLINK WN551K1 - OS Command Injection via IP Parameter in touchlist_sync.cgi
Jun 24, 2024
CVSS 5.3
EPSS 0.02
CVE-2024-38892 MEDIUM
Wavlink WN551K1 - Exposure of Sensitive Information via ExportAllSettings.sh
Jun 24, 2024
CVSS 6.5
EPSS 0.00
CVE-2023-38861 CRITICAL
Wavlink WL_WNJ575A3 <R75A3_V1410_220513 - RCE
Aug 15, 2023
CVSS 9.8
EPSS 0.02
CVE-2023-32622 HIGH
WL-WN531AX2 Firmware < 2023526 - Authenticated OS Command Injection
Jun 30, 2023
CVSS 7.2
EPSS 0.00
CVE-2023-32621 HIGH
WL-WN531AX2 Firmware < 2023526 - Authenticated Arbitrary File Upload and OS Command Execution
Jun 30, 2023
CVSS 7.2
EPSS 0.00
CVE-2023-32620 MEDIUM
WL-WN531AX2 Firmware < 2023526 - Unauthenticated Wireless Password Exposure
Jun 30, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-32613 HIGH
WL-WN531AX2 Firmware < 2023526 - Unauthenticated Exposure of Resource to Wrong Sphere
Jun 30, 2023
CVSS 8.1
EPSS 0.00
CVE-2023-32612 HIGH
WL-WN531AX2 <2023526 - Command Injection
Jun 30, 2023
CVSS 7.2
EPSS 0.00
CVE-2023-3380 MEDIUM NUCLEI
WAVLINK WN579X3 - Remote Command Execution
Jun 23, 2023
CVSS 4.7
EPSS 0.80
CVE-2023-29708 HIGH
WavLink WavRouter RPT70HA1.x - Unauthenticated Factory Reset via adm.cgi
Jun 22, 2023
CVSS 7.5
EPSS 0.06
CVE-2022-48166 HIGH NUCLEI
Wavlink WL-WN530HG4 M30HG4.V5030.201217 - Unauthenticated Configuration and Log File Download
Feb 06, 2023
CVSS 7.5
EPSS 0.66
CVE-2022-48164 HIGH NUCLEI
Wavlink WL-WN533A8 M33A8.V5030.190716 - Info Disclosure
Feb 06, 2023
CVSS 7.5
EPSS 0.87
CVE-2022-48165 HIGH NUCLEI
Wavlink WL-WN530H4 M30H4.V5030.210121 - Info Disclosure
Feb 03, 2023
CVSS 7.5
EPSS 0.81
CVE-2022-44356 HIGH NUCLEI
WAVLINK Quantum D4G - Info Disclosure
Nov 29, 2022
CVSS 7.5
EPSS 0.47