wavlink

210 tracked vulnerabilities.

CVE-2020-12125 CRITICAL
WAVLINK WN530H4 M30H4.V5030.190403 - Unauthenticated Remote Buffer Overflow via makeRequest.cgi Endpoint
Oct 02, 2020
CVSS 9.8
EPSS 0.06
CVE-2020-12124 CRITICAL NUCLEI
WAVLINK WN530H4 M30H4.V5030.190403 - Unauthenticated Remote Command Execution via live_api.cgi Endpoint
Oct 02, 2020
CVSS 9.8
EPSS 0.92
CVE-2020-12123 HIGH
WAVLINK WN530H4 M30H4.V5030.190403 - Cross-Site Request Forgery in /cgi-bin/ Directory
Oct 02, 2020
CVSS 8.1
EPSS 0.00
CVE-2020-15490 CRITICAL
Wavlink WL-WN530HG4 M30HG4.V5030.191116 - Remote Code Execution via CGI Script Buffer Overflow
Jul 01, 2020
CVSS 9.8
EPSS 0.04
CVE-2020-15489 CRITICAL
Wavlink WL-WN530HG4 M30HG4.V5030.191116 - Remote Code Execution via CGI Script Shell Metacharacter Injection
Jul 01, 2020
CVSS 9.8
EPSS 0.04
CVE-2020-10974 HIGH
Wavlink/Wavlink/Jetstream - Info Disclosure
May 07, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-10973 HIGH NUCLEI
Wavlink WN530HG4, WN531G3, WN533A8, and WN551K1 - Unauthenticated Configuration Export via ExportAllSettings.sh
May 07, 2020
CVSS 7.5
EPSS 0.25
CVE-2020-10972 HIGH
Wavlink WN530HG4, WN531G3, and WN572HG3 Firmware - Unauthenticated Administrator Password Exposure via live_?.shtml Page
May 07, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-10971 HIGH
Wavlink Jetstream - Command Injection
May 07, 2020
CVSS 8.8
EPSS 0.00
CVE-2020-12266 HIGH
Wavlink Multiple Router Models - Unauthenticated Information Disclosure via live_(string).shtml Pages
Apr 27, 2020
CVSS 7.5
EPSS 0.00