Show filters
28 Total Results
Displaying 1-10 of 28
Sort by:
Attacker Value
Unknown

CVE-2017-5753

Disclosure Date: January 04, 2018 (last updated January 15, 2025)
Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.
Attacker Value
Unknown

CVE-2022-48164

Disclosure Date: February 06, 2023 (last updated February 24, 2025)
An access control issue in the component /cgi-bin/ExportLogs.sh of Wavlink WL-WN533A8 M33A8.V5030.190716 allows unauthenticated attackers to download configuration data and log files and obtain admin credentials.
Attacker Value
Unknown

CVE-2022-35538

Disclosure Date: August 10, 2022 (last updated February 24, 2025)
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameters: delete_list, delete_al_mac, b_delete_list and b_delete_al_mac, which leads to command injection in page /wifi_mesh.shtml.
Attacker Value
Unknown

CVE-2022-35537

Disclosure Date: August 10, 2022 (last updated February 24, 2025)
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameters: mac_5g and Newname, which leads to command injection in page /wifi_mesh.shtml.
Attacker Value
Unknown

CVE-2022-35536

Disclosure Date: August 10, 2022 (last updated February 24, 2025)
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 qos.cgi has no filtering on parameters: qos_bandwith and qos_dat, which leads to command injection in page /qos.shtml.
Attacker Value
Unknown

CVE-2022-35535

Disclosure Date: August 10, 2022 (last updated February 24, 2025)
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameter macAddr, which leads to command injection in page /wifi_mesh.shtml.
Attacker Value
Unknown

CVE-2022-35534

Disclosure Date: August 10, 2022 (last updated February 24, 2025)
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameter hiddenSSID32g and SSID2G2, which leads to command injection in page /wifi_multi_ssid.shtml.
Attacker Value
Unknown

CVE-2022-35533

Disclosure Date: August 10, 2022 (last updated February 24, 2025)
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 qos.cgi has no filtering on parameters: cli_list and cli_num, which leads to command injection in page /qos.shtml.
Attacker Value
Unknown

CVE-2022-35526

Disclosure Date: August 10, 2022 (last updated February 24, 2025)
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 login.cgi has no filtering on parameter key, which leads to command injection in page /login.shtml.
Attacker Value
Unknown

CVE-2022-35525

Disclosure Date: August 10, 2022 (last updated February 24, 2025)
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 adm.cgi has no filtering on parameter led_switch, which leads to command injection in page /ledonoff.shtml.